ZeroHour

CVE-2022-42055

PoC
CVSS 3.1
6.5 medium
EPSS
2%p76
Published
()
Modified
Description

Multiple command injection vulnerabilities in GL.iNet GoodCloud IoT Device Management System Version 1.00.220412.00 via the ping and traceroute tools allow attackers to read arbitrary files on the system.

Vendors
gl-inet
Products
goodcloud
Weakness
CWE-78
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.