CVE-2022-40022: Command Injection
Microchip Technology (Microsemi) SyncServer S650 was discovered to contain a command injection vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-40022?
CVE-2022-40022 is a command injection vulnerability discovered in Microchip Technology (Microsemi) SyncServer S650 firmware.
What is the severity of CVE-2022-40022?
CVE-2022-40022 has a severity rating of critical with a CVSS score of 9.8.
How does CVE-2022-40022 affect Microchip SyncServer S650 firmware?
CVE-2022-40022 allows for unauthenticated remote command execution in Microchip SyncServer S650 firmware.
How can I fix CVE-2022-40022?
To fix CVE-2022-40022, it is recommended to apply the latest firmware update provided by Microchip Technology.
Where can I find more information about CVE-2022-40022?
You can find more information about CVE-2022-40022 in the provided references: [Link 1](http://packetstormsecurity.com/files/172907/Symmetricom-SyncServer-Unauthenticated-Remote-Command-Execution.html), [Link 2](https://www.microsemi.com/campaigns/network-time-servers/S650p/%3Fgd%3D1&id=5&gclid=Cj0KCQjwjbyYBhCdARIsAArC6LL-202ej5YfDB5lMIMSZ2735qjo5yaj2i-PrvLv2Cnh_kIJtFJ0oF8aAlMpEALw_wcB), [Link 3](https://www.microsemi.com/campaigns/network-time-servers/syncserver-s600/?url=).