Vulnerability Details CVE-2022-35266
A denial of service vulnerability exists in the web_server hashFirst functionality of Robustel R1510 3.1.16 and 3.3.0. A specially-crafted network request can lead to denial of service. An attacker can send a sequence of requests to trigger this vulnerability.This denial of service is in the `/action/import_firmware/` API.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 17.2%
CVSS Severity
CVSS v3 Score 4.9
Products affected by CVE-2022-35266
-
cpe:2.3:h:robustel:r1510:-
-
cpe:2.3:o:robustel:r1510_firmware:3.1.16
-
cpe:2.3:o:robustel:r1510_firmware:3.3.0