CVE-2022-37066: Critical severity h3c gr-1200w firmware vulnerability
Published Aug 25, 2022
·Updated
H3C GR-1200W MiniGRW1A0V100R006 was discovered to contain a stack overflow via the function UpdateDDNS.
Affected Software
2 affected components
H3C Gr-1200w Firmware<=minigrw1a0v100r006
H3C GR-1200W
Event History
Aug 25, 2022
CVE Published
via MITRE·01:59 PM
Data Sourced
via MITRE·01:59 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-37066?
The severity of CVE-2022-37066 is critical with a severity value of 9.8.
2
What is CVE-2022-37066?
CVE-2022-37066 is a vulnerability discovered in H3C GR-1200W MiniGRW1A0V100R006 firmware, which allows for a stack overflow via the function UpdateDDNS.
3
How can I check if my H3C GR-1200W device is affected by CVE-2022-37066?
You can check if your H3C GR-1200W device is affected by CVE-2022-37066 by verifying if the firmware version is MiniGRW1A0V100R006.
4
What is the Common Weakness Enumeration (CWE) for CVE-2022-37066?
The Common Weakness Enumeration (CWE) for CVE-2022-37066 is CWE-787, which refers to a Stack-based Buffer Overflow vulnerability.
5
Is there a fix available for CVE-2022-37066?
It is recommended to update the H3C GR-1200W firmware to a version that addresses the stack overflow vulnerability in the function UpdateDDNS.