CVE-2022-2482: High severity nokia asika airscale vulnerability
A vulnerability exists in Nokia’s ASIK AirScale system module (versions 474021A.101 and 474021A.102) that could allow an attacker to place a script on the file system accessible from Linux. A script placed in the appropriate place could allow for arbitrary code execution in the bootloader.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2022-2482?
CVE-2022-2482 has a severity rating of 8.8 (high).
What is the affected software for CVE-2022-2482?
The affected software for CVE-2022-2482 includes Nokia Asik Airscale 474021a.101 Firmware and Nokia Asik Airscale 474021a.102 Firmware.
How can an attacker exploit CVE-2022-2482?
An attacker can exploit CVE-2022-2482 by placing a script on the file system accessible from Linux, allowing for arbitrary code execution in the bootloader.
Is Nokia Asik Airscale 474021a.101 vulnerable to CVE-2022-2482?
No, Nokia Asik Airscale 474021a.101 is not vulnerable to CVE-2022-2482.
Is Nokia Asik Airscale 474021a.102 vulnerable to CVE-2022-2482?
Yes, Nokia Asik Airscale 474021a.102 is vulnerable to CVE-2022-2482.