Lucene search

K
nvd[email protected]NVD:CVE-2022-2661
HistoryAug 16, 2022 - 9:15 p.m.

CVE-2022-2661

2022-08-1621:15:09
CWE-285
web.nvd.nist.gov
4
vulnerability
low-privileged user
administrative functions
crafted requests

CVSS3

8.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

42.8%

Sequi PortBloque S has an improper authorization vulnerability, which may allow a low-privileged user to perform administrative functions using specifically crafted requests.

Affected configurations

Nvd
Node
sequiportbloque_s_firmware
AND
sequiportbloque_sMatch-
VendorProductVersionCPE
sequiportbloque_s_firmware*cpe:2.3:o:sequi:portbloque_s_firmware:*:*:*:*:*:*:*:*
sequiportbloque_s-cpe:2.3:h:sequi:portbloque_s:-:*:*:*:*:*:*:*

CVSS3

8.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

42.8%

Related for NVD:CVE-2022-2661