SNMP Credentials Disclosure Vulnerability in AirVelocity 1500 and Related Models

SNMP Credentials Disclosure Vulnerability in AirVelocity 1500 and Related Models

CVE-2022-36307 · MEDIUM Severity

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

The AirVelocity 1500 prints SNMP credentials on its physically accessible serial port during boot. This was fixed in AirVelocity 1500 software version 15.18.00.2511 and may affect other AirVelocity and AirSpeed models.

Learn more about our Physical Security Assessment.