CVE-2022-36309
16.08.2022, 01:15
Airspan AirVelocity 1500 software versions prior to 15.18.00.2511 have a root command injection vulnerability in the ActiveBank parameter of the recoverySubmit.cgi script running on the eNodeB's web management UI. This issue may affect other AirVelocity and AirSpeed models.
Vendor | Product | Version |
---|---|---|
airspan | airvelocity_1500_firmware | 9.3.0.01249 ≤ 𝑥 ≤ 15.18.00.2511 |
𝑥
= Vulnerable software versions