PoC Index

CVE-2022-34845

MEDIUM 6.7EPSS 0.4%

A firmware update vulnerability exists in the sysupgrade functionality of Robustel R1510 3.1.16 and 3.3.0. A specially-crafted network packet can lead to arbitrary firmware update. An attacker can send a sequence of requests to trigger this vulnerability.

CVSS v3.1
2.7 LOWCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:L/A:N
CVSS v3.0
6.7 MEDIUMCVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:H/A:H
EPSS
0.36% chance of exploitation in the next 30 days, 29th percentile
Published
2022-10-25
Updated
2025-04-15

Proof-of-concept exploits (1)

References

Related