First published: Mon Jul 25 2022(Updated: )
An issue was discovered in Atos Unify OpenScape SBC 9 and 10 before 10R2.2.1, Atos Unify OpenScape Branch 9 and 10 before version 10R2.1.1, and Atos Unify OpenScape BCF 10 before 10R9.12.1. A remote code execution vulnerability may allow an unauthenticated attacker (with network access to the admin interface) to disrupt system availability or potentially compromise the confidentiality and integrity of the system.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Atos Unify OpenScape BCF | >=10<10r9.12.1 | |
Atos Unify OpenScape Branch | >=10<10r2.1.1 | |
Atos Unify OpenScape Branch | =9 | |
Atos Unify Openscape Session Border Controller | >=10<10r2.2.1 | |
Atos Unify Openscape Session Border Controller | =9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-36444 is critical with a CVSS score of 9.8.
Atos Unify OpenScape SBC 9 and 10 before 10R2.2.1, Atos Unify OpenScape Branch 9 and 10 before version 10R2.1.1, and Atos Unify OpenScape BCF 10 before 10R9.12.1 are affected by CVE-2022-36444.
CVE-2022-36444 is a remote code execution vulnerability that may allow an unauthenticated attacker to execute arbitrary code.
The vulnerability in CVE-2022-36444 can be exploited by an unauthenticated attacker with network access to the admin interface.
Yes, a fix is available for CVE-2022-36444. It is recommended to upgrade to Atos Unify OpenScape SBC 10R2.2.1, Atos Unify OpenScape Branch 10R2.1.1, or Atos Unify OpenScape BCF 10R9.12.1 to mitigate the vulnerability.