CVE-2022-45963

CRITICAL WAF: Low
CVSS 9.8 Published: 2022-12-27
CWE-269

h3c firewall <= 3.10 ESS6703 has a privilege bypass vulnerability.

WAF Coverage Analysis

Improper Privilege Management Low WAF Coverage

OWASP: A01:2021 Broken Access Control

Affected Software

VendorProductVersion
h3csecpath_f5030_firmwareup to 3.10_ess6703
h3csecpath_f5060_firmwareup to 3.10_ess6703
h3csecpath_f5080_firmwareup to 3.10_ess6703
h3csecpath_f5030-d_firmwareup to 3.10_ess6703
h3csecpath_f5060-d_firmwareup to 3.10_ess6703
h3csecpath_f5080-d_firmwareup to 3.10_ess6703
h3csecpath_f500-6gw_firmwareup to 3.10_ess6703
h3csecpath_f5010_firmwareup to 3.10_ess6703
h3csecpath_f5020_firmwareup to 3.10_ess6703
h3csecpath_f5040_firmwareup to 3.10_ess6703

References

Back to CVE Database