CVE-2022-2634
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD
Description
An attacker may be able to execute malicious actions due to the lack of device access protections and device permissions when using the web application. This could lead to uploading python files which can be later executed.
Affected (1)
Products: Digi: Connectport X2d Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2020-01-01 |
| Running on/with | Platform Versions |
|---|---|
Digi Connectport X2d | All versions |
References (2)
Source: ics-cert@hq.dhs.gov
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource
Timeline
No history available yet.