CVE-2022-26516: ICSA-22-104-03 Red Lion DA50N
Authorized users may install a maliciously modified package file when updating the device via the web user interface. The user may inadvertently use a package file obtained from an unauthorized source or a file that was compromised between download and deployment.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-26516?
CVE-2022-26516 is a vulnerability that allows authorized users to install a maliciously modified package file when updating the device via the web user interface.
How does CVE-2022-26516 affect Redlion Da50n Firmware?
CVE-2022-26516 affects Redlion Da50n Firmware by allowing authorized users to inadvertently install a package file obtained from an unauthorized source or a compromised file.
What is the severity of CVE-2022-26516?
The severity of CVE-2022-26516 is high, with a CVSS score of 7.8.
How can I fix CVE-2022-26516?
To fix CVE-2022-26516, it is recommended to apply the latest firmware update provided by Redlion and avoid using package files obtained from unauthorized sources.
Are there any additional references for CVE-2022-26516?
Yes, you can find more information about CVE-2022-26516 at the following reference: https://www.cisa.gov/uscert/ics/advisories/icsa-22-104-03