QID 591033
Date Published: 2022-09-16
QID 591033: InHand Networks Industrial Router IR302 Multiple Vulnerabilities (InHand-PSA-2022-01)
AFFECTED PRODUCTS
IR302 version 3.5.37 and prior.
QID Detection Logic (Authenticated):
QID checks for the Vulnerable version of using passive scanning
InHand Networks has confirmed the vulnerabilities impacting the Industrial Router IR302, which will allow attackers to execute arbitrary commands, file uploading, increase privileges or steal cookies via specific request.
Solution
Customers are advised to refer to InHand MITIGATIONS section InHand-PSA-2022-01 for affected packages and patching details.
Vendor References
- InHand-PSA-2022-01 -
www.inhandnetworks.com/upload/attachment/202205/10/InHand-PSA-2022-01.pdf
CVEs related to QID 591033
CVE-2022-21809 | CVE-2022-21238 | CVE-2022-25172 | CVE-2022-24910 | CVE-2022-21182 | CVE-2022-26085 | CVE-2022-26020 | CVE-2022-26007 | CVE-2022-26002 | CVE-2022-25995 | CVE-2022-26042 | CVE-2022-26780 | CVE-2022-26781 | CVE-2022-26782 | CVE-2022-26510 | CVE-2022-27172 | CVE-2022-26420 | CVE-2022-26075 | CVE-2022-26518 |
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| CVE-2022-26002 |
|