CVE-2022-36510: OS Command Injection
Published Aug 25, 2022
·Updated
H3C GR2200 MiniGR1A0V100R014 was discovered to contain a command injection vulnerability via the param parameter at DelL2tpLNSList.
Affected Software
4 affected components
H3C Gr2200 Firmware=minigr1a0v100r014
H3C GR2200
All of the following
H3C Gr2200 Firmware=minigr1a0v100r014
H3C GR2200
Event History
Aug 25, 2022
CVE Published
via MITRE·01:58 PM
Data Sourced
via MITRE·01:58 PM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-36510?
CVE-2022-36510 has a high severity rating due to its potential for command injection.
2
How do I fix CVE-2022-36510?
To mitigate CVE-2022-36510, update your H3C GR2200 firmware to the latest version that addresses this vulnerability.
3
What devices are affected by CVE-2022-36510?
CVE-2022-36510 affects the H3C GR2200 MiniGR1A0V100R014 firmware specifically.
4
Can CVE-2022-36510 be exploited remotely?
Yes, CVE-2022-36510 can be exploited remotely if the targeted device is accessible over the network.
5
What type of vulnerability is CVE-2022-36510?
CVE-2022-36510 is classified as a command injection vulnerability.