VendorsBeldenhirschmann_bat-c2_firmwareall versions
Vulnerabilities

Belden Hirschmann BAT-C2 Firmware

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2022-40282
The web server of Hirschmann BAT-C2 before 09.13.01.00R04 allows authenticated command injection. This allows an authenticated attacker to pass commands to the shell of the system because the dir parameter of the FsCreateDir Ajax function is not sufficiently sanitized. The vendor's ID is BSECV-2022-21.
Published 2022-11-25 · Modified
8.8EPSS 0.041