CVE-2022-35733
CVE-2022-35733
Vexday Risk Score
3Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS —EPSS 1.2%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
23 ago 2022Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Missing authentication for critical function vulnerability in UNIMO Technology digital video recorders (UDR-JA1004/JA1008/JA1016 firmware versions v1.0.20.13 and earlier, and UDR-JA1016 firmware versions v2.0.20.13 and earlier) allows a remote unauthenticated attacker to execute an arbitrary OS command by sending a specially crafted request to the affected device web interface.
Productos afectados
UNIMO Technology Co., Ltd · UNIMO Technology digital video recorders UDR-JA1004/JA1008/JA1016 and UDR-JA1016¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →