CVE-2022-44149
CVE-2022-44149
Vexday Risk Score
53Attention
SSVC decision (CISA)
Attend
PoC available → attend closely
CVSS 8.8EPSS 64.4%KEV nãoPoC públicaNuclei —Metasploit —Patch —
Lifecycle
06 Jan 2023Published on NVD
06 Jan 2023Public PoC
Recommendation: Plan a near-term fix — a public PoC already exists.
The web service on Nexxt Amp300 ARN02304U8 42.103.1.5095 and 80.103.2.5045 devices allows remote OS command execution by placing &telnetd in the JSON host field to the ping feature of the goform/sysTools component. Authentication is required
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected products
n/a · n/apublic PoCs found — 6
githubgithub.com/geniuszly/CVE-2022-44149★ 5githubgithub.com/yerodin/CVE-2022-44149★ 0cve_referencepacketstormsecurity.com/files/170366/Nexxt-Router-Firmware-42.103.1.5095-Remote-Code-Execution.htmlunverifiedcve_referencepacketstormsecurity.com/files/170366/Nexxt-Router-Firmware-80.103.2.5045-Remote-Code-Execution.htmlunverifiedcve_referencepacketstormsecurity.com/files/170366/Nexxt-Router-Firmware-42.103.1.5095-Remote-Code-Execution.htmlunverifiedexploitdbwww.exploit-db.com/exploits/51195unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://packetstormsecurity.com/files/170366/Nexxt-Router-Firmware-42.103.1.5095-Remote-Code-Execution.htmlhttp://packetstormsecurity.com/files/170366/Nexxt-Router-Firmware-80.103.2.5045-Remote-Code-Execution.htmlhttps://cxsecurity.com/issue/WLB-2023010006https://packetstormsecurity.com/files/170366/Nexxt-Router-Firmware-42.103.1.5095-Remote-Code-Execution.htmlhttps://www.nexxtsolutions.com/connectivity/search/?q=ARN02304U8