CVE-2022-32664

CVSS V2 None CVSS V3 None
Description
In Config Manager, there is a possible command injection due to improper input validation. This could lead to remote escalation of privilege with User execution privileges needed. User interaction is needed for exploitation. Patch ID: A20220004; Issue ID: OSBNB00140929.
Overview
  • CVE ID
  • CVE-2022-32664
  • Assigner
  • security@mediatek.com
  • Vulnerability Status
  • Analyzed
  • Published Version
  • 2023-01-03T21:15:12
  • Last Modified Date
  • 2023-01-10T18:01:34
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
AND
cpe:2.3:a:mediatek:linkit_software_development_kit:*:*:*:*:*:*:*:* 1 OR 7.3.293.0
cpe:2.3:h:mediatek:en7516:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:a:mediatek:linkit_software_development_kit:*:*:*:*:*:*:*:* 1 OR 7.3.293.0
cpe:2.3:h:mediatek:en7528:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:a:mediatek:linkit_software_development_kit:*:*:*:*:*:*:*:* 1 OR 7.3.293.0
cpe:2.3:h:mediatek:en7529:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:a:mediatek:linkit_software_development_kit:*:*:*:*:*:*:*:* 1 OR 7.3.293.0
cpe:2.3:h:mediatek:en7561:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:a:mediatek:linkit_software_development_kit:*:*:*:*:*:*:*:* 1 OR 7.3.293.0
cpe:2.3:h:mediatek:en7562:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:a:mediatek:linkit_software_development_kit:*:*:*:*:*:*:*:* 1 OR 7.3.293.0
cpe:2.3:h:mediatek:en7580:-:*:*:*:*:*:*:* 0 OR
History
Created Old Value New Value Data Type Notes
2023-01-03 22:16:50 Added to TrackCVE
2023-01-04 14:14:30 2023-01-04T14:02:51 CVE Modified Date updated
2023-01-04 14:14:30 Received Awaiting Analysis Vulnerability Status updated
2023-01-08 05:20:48 Awaiting Analysis Undergoing Analysis Vulnerability Status updated
2023-01-09 05:19:31 Undergoing Analysis Awaiting Analysis Vulnerability Status updated
2023-01-09 12:21:25 Awaiting Analysis Undergoing Analysis Vulnerability Status updated
2023-01-10 18:20:11 2023-01-10T18:01:34 CVE Modified Date updated
2023-01-10 18:20:11 Undergoing Analysis Analyzed Vulnerability Status updated
2023-01-10 18:20:11 Weakness Enumeration new
2023-01-10 18:20:13 CPE Information updated