CVE-2022-33128: SQL Injection
Published Jun 25, 2022
·Updated
RG-EG series gateway EG350 EGRGOS 11.1(6) was discovered to contain a SQL injection vulnerability via the function getalarmAction at /alarmpi/alarmService.php.
Affected Software
2 affected components
Ruijienetworks Rg-eg350 Firmware=eg_rgos_11.1\(6\)
Ruijienetworks Rg-eg350=1.0
Event History
Jun 25, 2022
CVE Published
via MITRE·01:13 AM
Data Sourced
via MITRE·01:13 AM
Description
Frequently Asked Questions
1
What is CVE-2022-33128?
CVE-2022-33128 is a SQL injection vulnerability in the RG-EG series gateway EG350 EG_RGOS 11.1(6) firmware.
2
What is the affected software for CVE-2022-33128?
The affected software for CVE-2022-33128 is the Ruijienetworks RG-EG350 firmware version EG_RGOS 11.1(6).
3
How severe is CVE-2022-33128?
CVE-2022-33128 has a severity rating of 9.1 (critical).
4
How can I fix CVE-2022-33128?
To fix CVE-2022-33128, apply the latest security patch or update provided by Ruijienetworks.
5
Where can I find more information about CVE-2022-33128?
You can find more information about CVE-2022-33128 at the following link: http://blog.mo60.cn/index.php/archives/ruijie.html