Vulnerability Details CVE-2022-35222
HiCOS Citizen verification component has a stack-based buffer overflow vulnerability due to insufficient parameter length validation. An unauthenticated physical attacker can exploit this vulnerability to execute arbitrary code, manipulate system command or disrupt service.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 16.7%
CVSS Severity
CVSS v3 Score 6.8
Products affected by CVE-2022-35222
-
cpe:2.3:a:hinet:hicos_natural_person_credential_component_client:3.0.3.30306
-
cpe:2.3:a:hinet:hicos_natural_person_credential_component_client:3.0.3.30404
-
cpe:2.3:a:hinet:hicos_natural_person_credential_component_client:3.1.0.00002