First published: Sun Apr 10 2022(Updated: )
InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE) vulnerability via the function sub_12028. This vulnerability is triggered via a crafted packet.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Inhandnetworks Inrouter 900 Firmware | <1.0.0.r11700 | |
Inhandnetworks Inrouter 900 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-27274.
The severity of CVE-2022-27274 is critical with a CVSS score of 9.8.
The affected software of CVE-2022-27274 is InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700.
CVE-2022-27274 is triggered via a crafted packet.
Yes, you can find references for CVE-2022-27274 at the following links: [Reference 1](https://drive.google.com/drive/folders/1zJ2dGrKar-WTlYz13v1f0BIsoIm3aU0l?usp=sharing), [Reference 2](https://github.com/wu610777031/IoT_Hunter/blob/main/Inhand%20InRouter%20900%20Industrial%204G%20Router%20%20Vulnerabilities(RCE).pdf).