Vulnerability Description
Phicomm K2G v22.6.3.20 was discovered to store the root and admin passwords in plaintext.
CVSS Score
7.5
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Phicomm | K2 Firmware | 22.6.534.263 |
| Phicomm | K2 | - |
Related Weaknesses (CWE)
References
- https://befitting-vinca-933.notion.site/Phicomm-K2-v22-6-534-263-Sensitive-Infor
- https://befitting-vinca-933.notion.site/Phicomm-K2G-v22-6-3-20-Sensitive-InformaExploitThird Party Advisory
- https://befitting-vinca-933.notion.site/Phicomm-K2-v22-6-534-263-Sensitive-Infor
- https://befitting-vinca-933.notion.site/Phicomm-K2G-v22-6-3-20-Sensitive-InformaExploitThird Party Advisory
FAQ
What is CVE-2022-48073?
CVE-2022-48073 is a vulnerability with a CVSS score of 7.5 (HIGH). Phicomm K2G v22.6.3.20 was discovered to store the root and admin passwords in plaintext.
How severe is CVE-2022-48073?
CVE-2022-48073 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-48073?
Check the references section above for vendor advisories and patch information. Affected products include: Phicomm K2 Firmware, Phicomm K2.