Lucene search

K
cveMitreCVE-2022-43308
HistoryNov 18, 2022 - 4:15 a.m.

CVE-2022-43308

2022-11-1804:15:16
CWE-269
mitre
web.nvd.nist.gov
30
4
intelbras
sg 2404
mr
cve-2022-43308
nvd
security
arbitrary account creation

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

AI Score

7.4

Confidence

High

EPSS

0.001

Percentile

17.8%

INTELBRAS SG 2404 MR 20180928-rel64938 allows authenticated attackers to arbitrarily create Administrator accounts via crafted user cookies.

Affected configurations

Nvd
Node
intelbrassg_2404_poeMatch-
AND
intelbrassg_2404_poe_firmwareMatch-
Node
intelbrassg_2404_mrMatch-
AND
intelbrassg_2404_mr_firmwareMatch-
VendorProductVersionCPE
intelbrassg_2404_poe-cpe:2.3:h:intelbras:sg_2404_poe:-:*:*:*:*:*:*:*
intelbrassg_2404_poe_firmware-cpe:2.3:o:intelbras:sg_2404_poe_firmware:-:*:*:*:*:*:*:*
intelbrassg_2404_mr-cpe:2.3:h:intelbras:sg_2404_mr:-:*:*:*:*:*:*:*
intelbrassg_2404_mr_firmware-cpe:2.3:o:intelbras:sg_2404_mr_firmware:-:*:*:*:*:*:*:*

Social References

More

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

AI Score

7.4

Confidence

High

EPSS

0.001

Percentile

17.8%

Related for CVE-2022-43308