Vulnerability Details CVE-2022-21196
                MMP: All versions prior to v1.0.3, PTP C-series: Device versions prior to v2.8.6.1, and PTMP C-series and A5x: Device versions prior to v2.5.4.1 does not perform proper authorization and authentication checks on multiple API routes. An attacker may gain access to these API routes and achieve remote code execution, create a denial-of-service condition, and obtain sensitive information.
                
                    Exploit prediction scoring system (EPSS) score
                    
                        
                            EPSS Score 0.006
                        
                    
                    
                        
                            EPSS Ranking 67.7%
                        
                    
                 
                
                    CVSS Severity
                    
                        
                            CVSS v3 Score 10.0
                        
                    
                    
                        
                            CVSS v2 Score 10.0
                        
                    
                 
                
                
                
                    
                
                
                    
                        Products affected by CVE-2022-21196
                        
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:a:airspan:mimosa_management_platform:*
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                
 
                            
                                
                                - 
                                    
                                    
                                
 
                            
                                
                                - 
                                    
                                    
                                
 
                            
                                
                                - 
                                    
                                    
                                
 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:airspan:a5x_firmware:*
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:airspan:c5c_firmware:*
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:airspan:c5x_firmware:*
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:airspan:c6x_firmware:*