CVE-2022-3086
—CVSS 3.1
7.6 high
EPSS
<1%p24
Published
()
Modified
Description
Cradlepoint IBR600 NCOS versions 6.5.0.160bc2e and prior are vulnerable to shell escape, which enables local attackers with non-superuser credentials to gain full, unrestrictive shell access which may allow an attacker to execute arbitrary code.
- Vendors
- moxa
- Products
- uc-8580-t-lx firmware, uc-8580-t-ct-lx firmware, uc-8580-t-q-lx firmware, uc-8580-t-ct-q-lx firmware, uc-8580-q-lx firmware, uc-8580-lx firmware, uc-8540-lx firmware, uc-8540-t-ct-lx firmware, uc-8540-t-lx firmware, uc-8410a-lx firmware, uc-8410a-nw-lx firmware, uc-8410a-nw-t-lx firmware
- Weakness
- CWE-77
- Vector
- CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.