CVE-2022-36221

Nokia Fastmile 3tg00118abad52 is affected by an authenticated path traversal vulnerability which allows attackers to read any named pipe file on the system.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:nokia:fastmile_firmware:3tg00118abad52:*:*:*:*:*:*:*
cpe:2.3:h:nokia:fastmile:-:*:*:*:*:*:*:*

History

28 Dec 2022, 21:12

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5
First Time Nokia fastmile Firmware
Nokia fastmile
Nokia
References (MISC) https://eddiez.me/hacking-the-nokia-fastmile-pt2/#pipe-path-traversal - (MISC) https://eddiez.me/hacking-the-nokia-fastmile-pt2/#pipe-path-traversal - Exploit, Third Party Advisory
CPE cpe:2.3:o:nokia:fastmile_firmware:3tg00118abad52:*:*:*:*:*:*:*
cpe:2.3:h:nokia:fastmile:-:*:*:*:*:*:*:*
CWE CWE-22

21 Dec 2022, 19:23

Type Values Removed Values Added
New CVE

Information

Published : 2022-12-21 19:15

Updated : 2023-12-10 14:48


NVD link : CVE-2022-36221

Mitre link : CVE-2022-36221

CVE.ORG link : CVE-2022-36221


JSON object : View

Products Affected

nokia

  • fastmile
  • fastmile_firmware
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')