CVE-2022-36308
Estado: ModificadaCrítica (9.1)—
Airspan AirVelocity 1500 web management UI displays SNMP credentials in plaintext on software versions older than 15.18.00.2511, and stores SNMPv3 credentials unhashed on the filesystem, enabling anyone with web access to use these credentials to manipulate the eNodeB over SNMP. This issue may affect other AirVelocity and AirSpeed models.
CVSS
- Versión: 3.1
- Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
- Puntuación base: 9.1
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 0.73%
- Percentil entre todas las CVEs puntuadas: 53
- Fecha de la puntuación: 6/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (1)
CWE
- CWE-256
- CWE-522
Referencias
JSON original (NVD)
Mostrar
{
"id": "CVE-2022-36308",
"cveTags": [],
"metrics": {
"cvssMetricV31": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.1",
"baseScore": 9.1,
"attackVector": "NETWORK",
"baseSeverity": "CRITICAL",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N",
"integrityImpact": "HIGH",
"userInteraction": "NONE",
"attackComplexity": "LOW",
"availabilityImpact": "NONE",
"privilegesRequired": "NONE",
"confidentialityImpact": "HIGH"
},
"impactScore": 5.2,
"exploitabilityScore": 3.9
}
]
},
"affected": [
{
"source": "cve-assign@fb.com",
"affectedData": [
{
"vendor": "Airspan",
"product": "AirVelocity",
"versions": [
{
"status": "affected",
"version": "unspecified",
"lessThan": "15.18.00.2511",
"versionType": "custom"
}
]
}
]
}
],
"published": "2022-08-16T01:15:13.480",
"references": [
{
"url": "https://github.com/metaredteam/external-disclosures/security/advisories/GHSA-qjgc-rx8m-q58x",
"tags": [
"Third Party Advisory"
],
"source": "cve-assign@fb.com"
},
{
"url": "https://helpdesk.airspan.com/browse/TRN3-1692",
"tags": [
"Permissions Required",
"Vendor Advisory"
],
"source": "cve-assign@fb.com"
},
{
"url": "https://github.com/metaredteam/external-disclosures/security/advisories/GHSA-qjgc-rx8m-q58x",
"tags": [
"Third Party Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://helpdesk.airspan.com/browse/TRN3-1692",
"tags": [
"Permissions Required",
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Secondary",
"source": "cve-assign@fb.com",
"description": [
{
"lang": "en",
"value": "CWE-256"
}
]
},
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "CWE-522"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "Airspan AirVelocity 1500 web management UI displays SNMP credentials in plaintext on software versions older than 15.18.00.2511, and stores SNMPv3 credentials unhashed on the filesystem, enabling anyone with web access to use these credentials to manipulate the eNodeB over SNMP. This issue may affect other AirVelocity and AirSpeed models."
},
{
"lang": "es",
"value": "La interfaz de administración web de Airspan AirVelocity 1500 muestra las credenciales SNMP en texto plano en las versiones de software anteriores a 15.18.00.2511, y almacena las credenciales SNMPv3 sin codificar en el sistema de archivos, lo que permite a cualquier persona con acceso a la web usar estas credenciales para manipular el eNodeB a través de SNMP. Este problema puede afectar a otros modelos AirVelocity y AirSpeed."
}
],
"lastModified": "2026-06-17T04:53:12.083",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:airspan:airvelocity_1500_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "ECF71DBB-8D4C-4A82-8F4B-3907062C1379",
"versionEndIncluding": "15.18.00.2511",
"versionStartIncluding": "9.3.0.01249"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:airspan:airvelocity_1500:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "DB5DBFEA-0C64-4E87-A11E-6C850D4C87CE"
}
],
"operator": "OR"
}
],
"operator": "AND"
}
],
"sourceIdentifier": "cve-assign@fb.com"
}