Airspan AirVelocity 1500 prior to software version 15.18.00.2511 is vulnerable to injection leading to XSS in the SNMP community field in the eNodeB's web management UI. This issue may affect other AirVelocity and AirSpeed models.
References
Link | Resource |
---|---|
https://helpdesk.airspan.com/browse/TRN3-1694 | Permissions Required Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: facebook
Published: 2022-08-16T00:34:12
Updated: 2022-08-16T00:34:12
Reserved: 2022-07-19T00:00:00
Link: CVE-2022-36311
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-08-16T01:15:13.960
Modified: 2022-08-17T14:29:02.080
Link: CVE-2022-36311
JSON object: View
Redhat Information
No data.
CWE