🛡️ CVE-2022-24806
🟡 CVSS 6.5 — Medium ✅ No Known Exploit CWE-20 NVD
6.5
CVSS Score
0 Low4 Medium7 High9 Critical10

Description

net-snmp provides various tools relating to the Simple Network Management Protocol. Prior to version 5.9.2, a user with read-write credentials can exploit an Improper Input Validation vulnerability when SETing malformed OIDs in master agent and subagent simultaneously. Version 5.9.2 contains a patch. Users should use strong SNMPv3 credentials and avoid sharing the credentials. Those who must use SNMPv1 or SNMPv2c should use a complex community string and enhance the protection by restricting access to a given IP address range.

Details

Severity MEDIUM
CVSS Score 6.5
CVSS Vector CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
CWE CWE-20
Public Exploit ✅ No
Source NVD
Published 2024-04-16
Updated 2026-06-08
Modified 2025-01-17

Affected Packages

Software From version Fixed in
debian-linux
enterprise-linux
enterprise-linux-eus
enterprise-linux-for-arm-64
enterprise-linux-for-arm-64-eus
enterprise-linux-for-ibm-z-systems
enterprise-linux-for-ibm-z-systems-eus
enterprise-linux-for-power-little-endian
enterprise-linux-for-power-little-endian-eus
enterprise-linux-server-aus
enterprise-linux-server-for-power-little-endian-update-services-for-sap-solutions
enterprise-linux-server-update-services-for-sap-solutions
enterprise-linux-update-services-for-sap-solutions
fedora
net-snmp 5.9.2

References

Similar Threats

Site Security Check

Concerned your site may already be targeted?

BotEraser analyzes incoming traffic patterns and helps identify bot behavior consistent with known exploit attempts.

Check My Site Free →

No credit card required  ·  Results in minutes

ⓘ Data Notice: The information presented above has been compiled from publicly available internet sources. Boteraser aggregates this data solely for informational purposes and does not independently classify, evaluate, or endorse any findings about the vulnerabilities listed. The accuracy and completeness of this information is the sole responsibility of the original publishers. Boteraser and its operators accept no liability for any decisions made based on this data.