PT-2022-17610 · Inhand Networks · Inrouter302

Francesco Benvenuto

·

Published

2022-10-28

·

Updated

2022-11-15

·

CVE-2022-25932

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions InHand Networks InRouter302 version 3.5.45
Description The issue affects the firmware of InHand Networks InRouter302, where fixes for certain vulnerabilities are incomplete, allowing an attacker to perform a privilege escalation and an information disclosure.
Recommendations For InHand Networks InRouter302 version 3.5.45, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2022-25932

Affected Products

Inrouter302