ZeroHour

CVE-2022-45562

PoC
CVSS 3.1
8.8 high
EPSS
1%p61
Published
()
Modified
Description

Insecure permissions in Telos Alliance Omnia MPX Node v1.0.0 to v1.4.9 allow attackers to manipulate and access system settings with backdoor account low privilege, this can lead to change hardware settings and execute arbitrary commands in vulnerable system functions that is requires high privilege to access.

Vendors
telosalliance
Products
omnia mpx node firmware
Weakness
CWE-276
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.