First published: Tue Jun 21 2022(Updated: )
The Quectel RG502Q-EA modem before 2022-02-23 allow OS Command Injection.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Quectel RG502Q-EA | <2022-02-23 | |
Quectel RG502Q-EA Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-26147 has a high severity due to its potential for OS command injection which could allow unauthorized command execution.
To fix CVE-2022-26147, update the Quectel RG502Q-EA modem firmware to a version released after February 23, 2022.
CVE-2022-26147 affects the Quectel RG502Q-EA modem firmware versions prior to 2022-02-23.
The risks associated with CVE-2022-26147 include unauthorized access and control over the modem, potentially compromising network security.
Yes, CVE-2022-26147 allows for remote exploitation if the attacker can send malicious commands to the vulnerable modem.