7.5
CVSSv3

CVE-2022-1361

Published: 17/05/2022 Updated: 07/06/2022
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The affected On-Premise cnMaestro is vulnerable to a pre-auth data exfiltration through improper neutralization of special elements used in an SQL command. This could allow an malicious user to exfiltrate data about other user’s accounts and devices.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cambiumnetworks cnmaestro 2.4.2

cambiumnetworks cnmaestro 3.0.0

cambiumnetworks cnmaestro 3.0.3

ICS Advisories

Cambium Networks cnMaestro
Critical Infrastructure Sectors: Information Technology