First published: Thu Aug 25 2022(Updated: )
H3C GR3200 MiniGR1B0V100R014 was discovered to contain a command injection vulnerability via the param parameter at DelL2tpLNSList.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
H3C GR3200 firmware | =minigr1b0v100r014 | |
H3C GR-3200 firmware | ||
H3C GR-3200 firmware | =minigr1b0v100r014 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-36509 is classified as a critical command injection vulnerability that allows remote attackers to execute arbitrary commands.
To remediate CVE-2022-36509, update the H3C GR3200 firmware to the latest version that addresses this vulnerability.
CVE-2022-36509 specifically affects H3C GR3200 firmware version minigr1b0v100r014.
CVE-2022-36509 is a command injection vulnerability that can be exploited through the param parameter.
The vendor for CVE-2022-36509 is H3C, which produces the GR3200 series of devices.