Ricon Mobile S9922XL and Ricon Mobile S9922L command execution | CVE-2022-0365
NAME
Ricon Mobile S9922XL and Ricon Mobile S9922L command execution
- Platforms Affected:
Ricon Industrial Cellular Router S9922XL 16.10.3
Ricon Industrial Cellular Router S9922L 16.10.3 - Risk Level:
9.1 - Exploitability:
Unproven - Consequences:
Gain Access
DESCRIPTION
Ricon Mobile S9922XL and Ricon Mobile S9922L could allow a remote attacker to execute arbitrary commands on the system, caused by an OS command injection vulnerability. An attacker could exploit this vulnerability to inject and execute arbitrary commands on the system with administrative privileges.
CVSS 3.0 Information
- Privileges Required: None
- User Interaction: None
- Scope: Unchanged
- Access Vector: Network
- Access Complexity: Low
- Confidentiality Impact: None
- Integrity Impact: High
- Availability Impact: High
- Remediation Level: Unavailable
MITIGATION
No remedy available as of February 1, 2022.
- Reference Link:
https://www.cisa.gov/uscert/ics/advisories/icsa-22-032-01 - Reference Link:
https://riconmobile.com/
If you like the site, please consider joining the telegram channel and supporting us on Patreon using the button below.