← Back

CVE-2022-47311

nvd nist
Published: May 22, 2023Modified: Nov 21, 2024

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

A proprietary protocol for iBoot devices is used for control and keepalive commands. The function compares the username and password; it also contains the configuration data for the user specified. If the user does not exist, then it sends a value for username and password, which allows successful authentication for a connection.

Affected (22)

22 products
Iboot Pdu4 N20 Firmware
Iboot Pdu4sa N15 Firmware
Iboot Pdu4a N15 Firmware
Iboot Pdu4sa N20 Firmware
Iboot Pdu4a N20 Firmware
Iboot Pdu8sa N15 Firmware
Iboot Pdu8a N15 Firmware
Iboot Pdu8sa 2n15 Firmware
Iboot Pdu8a 2n15 Firmware
Iboot Pdu8sa N20 Firmware
Iboot Pdu8a N20 Firmware
Iboot Pdu8a 2n20 Firmware
Iboot Pdu4 C20 Firmware
Iboot Pdu4a C10 Firmware
Iboot Pdu4sa C10 Firmware
Iboot Pdu8a C10 Firmware
Iboot Pdu8sa C10 Firmware
Iboot Pdu8a 2c20 Firmware
Iboot Pdu4sa C20 Firmware
Iboot Pdu4a C20 Firmware
Iboot Pdu8a 2c10 Firmware
Iboot Pdu8a C20 Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.42.06162022
Running on/withPlatform Versions
Dataprobe
Iboot Pdu4 N20
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.42.06162022
Running on/withPlatform Versions
Dataprobe
Iboot Pdu4sa N15
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.42.06162022
Running on/withPlatform Versions
Dataprobe
Iboot Pdu4a N15
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.42.06162022
Running on/withPlatform Versions
Dataprobe
Iboot Pdu4sa N20
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.42.06162022
Running on/withPlatform Versions
Dataprobe
Iboot Pdu4a N20
All versions
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.42.06162022
Running on/withPlatform Versions
Dataprobe
Iboot Pdu8sa N15
All versions
Configuration G
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.42.06162022
Running on/withPlatform Versions
Dataprobe
Iboot Pdu8a N15
All versions
Configuration H
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.42.06162022
Running on/withPlatform Versions
Dataprobe
Iboot Pdu8sa 2n15
All versions
Configuration I
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.42.06162022
Running on/withPlatform Versions
Dataprobe
Iboot Pdu8a 2n15
All versions
Configuration J
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.42.06162022
Running on/withPlatform Versions
Dataprobe
Iboot Pdu8sa N20
All versions
Configuration K
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.42.06162022
Running on/withPlatform Versions
Dataprobe
Iboot Pdu8a N20
All versions
Configuration L
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.42.06162022
Running on/withPlatform Versions
Dataprobe
Iboot Pdu8a 2n20
All versions
Configuration M
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.42.06162022
Running on/withPlatform Versions
Dataprobe
Iboot Pdu4 C20
All versions
Configuration N
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.42.06162022
Running on/withPlatform Versions
Dataprobe
Iboot Pdu4a C10
All versions
Configuration O
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.42.06162022
Running on/withPlatform Versions
Dataprobe
Iboot Pdu4sa C10
All versions
Configuration P
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.42.06162022
Running on/withPlatform Versions
Dataprobe
Iboot Pdu8a C10
All versions
Configuration Q
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.42.06162022
Running on/withPlatform Versions
Dataprobe
Iboot Pdu8sa C10
All versions
Configuration R
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.42.06162022
Running on/withPlatform Versions
Dataprobe
Iboot Pdu8a 2c20
All versions
Configuration S
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.42.06162022
Running on/withPlatform Versions
Dataprobe
Iboot Pdu4sa C20
All versions
Configuration T
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.42.06162022
Running on/withPlatform Versions
Dataprobe
Iboot Pdu4a C20
All versions
Configuration U
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.42.06162022
Running on/withPlatform Versions
Dataprobe
Iboot Pdu8a 2c10
All versions
Configuration V
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 1.42.06162022
Running on/withPlatform Versions
Dataprobe
Iboot Pdu8a C20
All versions

References (4)

Source: ics-cert@hq.dhs.gov
PatchThird Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Product
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party AdvisoryUS Government Resource

Timeline

No history available yet.