First published: Thu Aug 25 2022(Updated: )
H3C GR-1200W MiniGRW1A0V100R006 was discovered to contain a command injection vulnerability via the param parameter at DelL2tpLNSList.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
H3c Gr-1200w Firmware | <=minigrw1a0v100r006 | |
H3C GR-1200W |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-37070 refers to a command injection vulnerability found in the H3C GR-1200W MiniGRW1A0V100R006 firmware.
CVE-2022-37070 has a severity rating of 9.8 (Critical).
CVE-2022-37070 allows attackers to execute arbitrary commands on the affected device through the "param" parameter at DelL2tpLNSList.
Yes, H3C GR-1200W MiniGRW1A0V100R006 firmware is the only affected software.
To fix CVE-2022-37070, it is recommended to update to a patched version of the H3C GR-1200W firmware.