Known vulnerabilities in cnMaestro On-Premises

Software CPE: cpe:2.3:a:cambium_networks:cnmaestro_on-premises:*:*:*:*:*:*:*:*
Total vulnerabilities: 7
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting cnMaestro On-Premises cnMaestro On-Premises is affected by 7 known vulnerabilities: 2 high, 2 medium, 3 low Critical High Medium Low

Vulnerabilities (7)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU63157 - Use of Potentially Dangerous Function
CVE-2022-1356
CWE-676 Low
No
No
2.4.2-r29, 3.0.0-r34, 3.0.3-r32 13.05.2022 SB2022051309
#VU63156 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2022-1359
CWE-22 Medium
No
No
2.4.2-r29, 3.0.0-r34, 3.0.3-r32 13.05.2022 SB2022051309
#VU63153 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-1362
CWE-78 Medium
No
No
2.4.2-r29, 3.0.0-r34, 3.0.3-r32 13.05.2022 SB2022051309
#VU63151 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-1360
CWE-78 Low
No
No
2.4.2-r29, 3.0.0-r34, 3.0.3-r32 13.05.2022 SB2022051309
#VU63148 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2022-1361
CWE-89 High
No
No
2.4.2-r29, 3.0.0-r34, 3.0.3-r32 13.05.2022 SB2022051309
#VU63147 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
CVE-2022-1358
CWE-89 Low
No
No
2.4.2-r29, 3.0.0-r34, 3.0.3-r32 13.05.2022 SB2022051309
#VU63140 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-1357
CWE-78 High
No
No
2.4.2-r29, 3.0.0-r34, 3.0.3-r32 13.05.2022 SB2022051309