Firmware Update Vulnerability in Verizon 5G Home Outdoor Unit
CVE-2022-28370
7.5HIGH
What is CVE-2022-28370?
A significant security issue was identified in Verizon 5G Home LVSKIHP Outdoor Units, where the RPC endpoint responsible for firmware upgrades, 'crtc_fw_upgrade', lacks cryptographic validation. This oversight allows attackers to tamper with the firmware, potentially leading to unauthorized control and access to the affected devices.
