CVE-2022-29516 PUBLISHED CVSS 10 CRITICAL

FUJITSU Network IPCOM provided by FUJITSU LIMITED is an integrated network appliance. Operation management interface used to operate FUJITSU Network IPCOM contains multiple vulnerabilities listed below. * OS command injection in the web console (CWE-78) - CVE-2022-29516 * Buffer overflow in the Command Line Interface (CWE-120) - CVE-2020-10188 FUJITSU LIMITED reported these vulnerabilities to IPA to notify users of its solution through JVN. JPCERT/CC and FUJITSU LIMITED coordinated under the Information Security Early Warning Partnership.

EPSS 1.90% · 83.1th percentile

Risk Scores

CVSS v2.0
10
EPSS Score
1.90%
83.1th percentile

Affected Products

VendorProductVersions
FUJITSUIPCOM EX2 series
FUJITSUIPCOM VA2/VE1 series
FUJITSUIPCOM VE2 series
FUJITSUIPCOM EX series

Timeline

References

Open in Interactive Console →