Remote Command Execution Vulnerability in FUJITSU Network IPCOM Products
CVE-2022-29516

9.8CRITICAL

What is CVE-2022-29516?

The FUJITSU Network IPCOM series web console is susceptible to a remote command execution vulnerability. An attacker with remote access could exploit this weakness to execute arbitrary operating system commands, potentially compromising the affected device's integrity and security. Devices listed in this vulnerability should be evaluated promptly for potential exposure.

Affected Version(s)

IPCOM EX2 series, IPCOM EX series, IPCOM VE2 series, and IPCOM VA2/VE1 series IPCOM EX2 IN(3200, 3500), IPCOM EX2 LB(1100, 3200, 3500), IPCOM EX2 SC(1100, 3200, 3500), IPCOM EX2 NW(1100, 3200, 3500), IPCOM EX2 DC, IPCOM EX2 DC, IPCOM EX IN(2300, 2500, 2700), IPCOM EX LB(1100, 1300, 2300, 2500, 2700), IPCOM EX SC(1100, 1300, 2300, 2500, 2700), and IPCOM EX NW(1100, 1300, 2300, 2500, 2700)

References

CVSS V3.1

Score:
9.8
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2022-29516 : Remote Command Execution Vulnerability in FUJITSU Network IPCOM Products