CVE-2023-39222
Scores
EPSS
Percentile: 0.0%
CVSS
CVSS Score: 8.8/10
All CVSS Scores
Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vector Breakdown
CVSS (Common Vulnerability Scoring System) vector provides detailed metrics about vulnerability characteristics
CVSS
Attack Vector
Network (N)
Describes how the vulnerability is exploited
Attack Complexity
Low (L)
Describes the conditions beyond the attacker's control
Privileges Required
Low (L)
Describes the level of privileges an attacker must possess
User Interaction
None (N)
Captures the requirement for a human user participation
Scope
Unchanged (U)
Determines if a successful attack impacts components beyond the vulnerable component
Confidentiality Impact
High (H)
Measures the impact to the confidentiality of information
Integrity Impact
High (H)
Measures the impact to integrity of a successfully exploited vulnerability
Availability Impact
High (H)
Measures the impact to the availability of the impacted component
Description
OS command injection vulnerability in FURUNO SYSTEMS wireless LAN access point devices allows an authenticated user to execute an arbitrary OS command that is not intended to be executed from the web interface by sending a specially crafted request. Affected products and versions are as follows: ACERA 1320 firmware ver.01.26 and earlier, ACERA 1310 firmware ver.01.26 and earlier, ACERA 1210 firmware ver.02.36 and earlier, ACERA 1150i firmware ver.01.35 and earlier, ACERA 1150w firmware ver.01.35 and earlier, ACERA 1110 firmware ver.01.76 and earlier, ACERA 1020 firmware ver.01.86 and earlier, ACERA 1010 firmware ver.01.86 and earlier, ACERA 950 firmware ver.01.60 and earlier, ACERA 850F firmware ver.01.60 and earlier, ACERA 900 firmware ver.02.54 and earlier, ACERA 850M firmware ver.02.06 and earlier, ACERA 810 firmware ver.03.74 and earlier, and ACERA 800ST firmware ver.07.35 and earlier. They are affected when running in ST(Standalone) mode.
Scaner-VS 7 — a modern vulnerability management solution
Sources
CWEs
Vulnerable Software (14)
Type: Configuration
Vendor: furunosystems
Product: acera_1010_firmware
Operating System: * * *
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_1010_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "01.86", "vulnera...
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_1010_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "01.86", "vulnerable": true } ], "operator": "OR" }, { "cpe_match": [ { "cpe23uri": "cpe:2.3:h:furunosystems:acera_1010:-:*:*:*:*:*:*:*" } ], "operator": "OR" } ], "operator": "AND"}
Source: nvd
Type: Configuration
Vendor: furunosystems
Product: acera_1020_firmware
Operating System: * * *
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_1020_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "01.86", "vulnera...
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_1020_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "01.86", "vulnerable": true } ], "operator": "OR" }, { "cpe_match": [ { "cpe23uri": "cpe:2.3:h:furunosystems:acera_1020:-:*:*:*:*:*:*:*" } ], "operator": "OR" } ], "operator": "AND"}
Source: nvd
Type: Configuration
Vendor: furunosystems
Product: acera_1110_firmware
Operating System: * * *
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_1110_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "01.76", "vulnera...
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_1110_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "01.76", "vulnerable": true } ], "operator": "OR" }, { "cpe_match": [ { "cpe23uri": "cpe:2.3:h:furunosystems:acera_1110:-:*:*:*:*:*:*:*" } ], "operator": "OR" } ], "operator": "AND"}
Source: nvd
Type: Configuration
Vendor: furunosystems
Product: acera_1150i_firmware
Operating System: * * *
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_1150i_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "01.35", "vulner...
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_1150i_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "01.35", "vulnerable": true } ], "operator": "OR" }, { "cpe_match": [ { "cpe23uri": "cpe:2.3:h:furunosystems:acera_1150i:-:*:*:*:*:*:*:*" } ], "operator": "OR" } ], "operator": "AND"}
Source: nvd
Type: Configuration
Vendor: furunosystems
Product: acera_1150w_firmware
Operating System: * * *
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_1150w_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "01.35", "vulner...
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_1150w_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "01.35", "vulnerable": true } ], "operator": "OR" }, { "cpe_match": [ { "cpe23uri": "cpe:2.3:h:furunosystems:acera_1150w:-:*:*:*:*:*:*:*" } ], "operator": "OR" } ], "operator": "AND"}
Source: nvd
Type: Configuration
Vendor: furunosystems
Product: acera_1210_firmware
Operating System: * * *
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_1210_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "02.36", "vulnera...
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_1210_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "02.36", "vulnerable": true } ], "operator": "OR" }, { "cpe_match": [ { "cpe23uri": "cpe:2.3:h:furunosystems:acera_1210:-:*:*:*:*:*:*:*" } ], "operator": "OR" } ], "operator": "AND"}
Source: nvd
Type: Configuration
Vendor: furunosystems
Product: acera_1310_firmware
Operating System: * * *
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_1310_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "01.26", "vulnera...
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_1310_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "01.26", "vulnerable": true } ], "operator": "OR" }, { "cpe_match": [ { "cpe23uri": "cpe:2.3:h:furunosystems:acera_1310:-:*:*:*:*:*:*:*" } ], "operator": "OR" } ], "operator": "AND"}
Source: nvd
Type: Configuration
Vendor: furunosystems
Product: acera_1320_firmware
Operating System: * * *
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_1320_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "01.26", "vulnera...
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_1320_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "01.26", "vulnerable": true } ], "operator": "OR" }, { "cpe_match": [ { "cpe23uri": "cpe:2.3:h:furunosystems:acera_1320:-:*:*:*:*:*:*:*" } ], "operator": "OR" } ], "operator": "AND"}
Source: nvd
Type: Configuration
Vendor: furunosystems
Product: acera_800st_firmware
Operating System: * * *
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_800st_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "07.35", "vulner...
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_800st_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "07.35", "vulnerable": true } ], "operator": "OR" }, { "cpe_match": [ { "cpe23uri": "cpe:2.3:h:furunosystems:acera_800st:-:*:*:*:*:*:*:*" } ], "operator": "OR" } ], "operator": "AND"}
Source: nvd
Type: Configuration
Vendor: furunosystems
Product: acera_810_firmware
Operating System: * * *
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_810_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "03.74", "vulnerab...
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_810_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "03.74", "vulnerable": true } ], "operator": "OR" }, { "cpe_match": [ { "cpe23uri": "cpe:2.3:h:furunosystems:acera_810:-:*:*:*:*:*:*:*" } ], "operator": "OR" } ], "operator": "AND"}
Source: nvd
Type: Configuration
Vendor: furunosystems
Product: acera_850f_firmware
Operating System: * * *
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_850f_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "01.60", "vulnera...
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_850f_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "01.60", "vulnerable": true } ], "operator": "OR" }, { "cpe_match": [ { "cpe23uri": "cpe:2.3:h:furunosystems:acera_850f:-:*:*:*:*:*:*:*" } ], "operator": "OR" } ], "operator": "AND"}
Source: nvd
Type: Configuration
Vendor: furunosystems
Product: acera_850m_firmware
Operating System: * * *
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_850m_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "02.06", "vulnera...
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_850m_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "02.06", "vulnerable": true } ], "operator": "OR" }, { "cpe_match": [ { "cpe23uri": "cpe:2.3:h:furunosystems:acera_850m:-:*:*:*:*:*:*:*" } ], "operator": "OR" } ], "operator": "AND"}
Source: nvd
Type: Configuration
Vendor: furunosystems
Product: acera_900_firmware
Operating System: * * *
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_900_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "02.54", "vulnerab...
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_900_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "02.54", "vulnerable": true } ], "operator": "OR" }, { "cpe_match": [ { "cpe23uri": "cpe:2.3:h:furunosystems:acera_900:-:*:*:*:*:*:*:*" } ], "operator": "OR" } ], "operator": "AND"}
Source: nvd
Type: Configuration
Vendor: furunosystems
Product: acera_950_firmware
Operating System: * * *
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_950_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "01.60", "vulnerab...
{ "children": [ { "cpe_match": [ { "cpe23uri": "cpe:2.3:o:furunosystems:acera_950_firmware:*:*:*:*:*:*:*:*", "versionEndIncluding": "01.60", "vulnerable": true } ], "operator": "OR" }, { "cpe_match": [ { "cpe23uri": "cpe:2.3:h:furunosystems:acera_950:-:*:*:*:*:*:*:*" } ], "operator": "OR" } ], "operator": "AND"}
Source: nvd