Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-32665


In Boa, there is a possible command injection due to improper input validation. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: A20220026; Issue ID: OSBNB00144124.


Published

2023-01-03T21:15:12.700

Last Modified

2025-04-10T16:15:19.547

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

Weaknesses
  • Type: Primary
    CWE-77
  • Type: Secondary
    CWE-77

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application mediatek linkit_software_development_kit < tlb7.3.258.100-p1-1555 Yes
Hardware mediatek en7528 - No
Application mediatek linkit_software_development_kit < tlb7.3.258.100-p1-1555 Yes
Hardware mediatek en7580 - No

References