CVE-2022-43308: High severity Intelbras Sg 2404 Poe Firmware vulnerability
Published Nov 18, 2022
·Updated
INTELBRAS SG 2404 MR 20180928-rel64938 allows authenticated attackers to arbitrarily create Administrator accounts via crafted user cookies.
Affected Software
8 affected components
Intelbras Sg 2404 Poe Firmware
Intelbras Sg 2404 Poe
Intelbras Sg 2404 Mr Firmware
Intelbras SG 2404 MR
All of the following
Intelbras Sg 2404 Poe Firmware
Intelbras Sg 2404 Poe
All of the following
Intelbras Sg 2404 Mr Firmware
Intelbras SG 2404 MR
Event History
Nov 18, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this security issue?
The vulnerability ID is CVE-2022-43308.
2
What is the severity of CVE-2022-43308?
The severity of CVE-2022-43308 is high with a CVSS score of 7.8.
3
How does CVE-2022-43308 impact INTELBRAS SG 2404 MR 20180928-rel64938?
CVE-2022-43308 allows authenticated attackers to arbitrarily create Administrator accounts via crafted user cookies in INTELBRAS SG 2404 MR 20180928-rel64938.
4
Is INTELBRAS SG 2404 Poe affected by CVE-2022-43308?
No, INTELBRAS SG 2404 Poe is not affected by CVE-2022-43308.
5
How can I fix CVE-2022-43308?
Currently, there is no known fix for CVE-2022-43308. It is recommended to monitor the vendor's website for any updates or patches.