7.8
CVE-2022-3088
- EPSS 0.05%
- Veröffentlicht 28.11.2022 22:15:10
- Zuletzt bearbeitet 21.11.2024 07:18:47
- Quelle ics-cert@hq.dhs.gov
- CVE-Watchlists
- Unerledigt
UC-8100A-ME-T System Image: Versions v1.0 to v1.6, UC-2100 System Image: Versions v1.0 to v1.12, UC-2100-W System Image: Versions v1.0 to v 1.12, UC-3100 System Image: Versions v1.0 to v1.6, UC-5100 System Image: Versions v1.0 to v1.4, UC-8100 System Image: Versions v3.0 to v3.5, UC-8100-ME-T System Image: Versions v3.0 and v3.1, UC-8200 System Image: v1.0 to v1.5, AIG-300 System Image: v1.0 to v1.4, UC-8410A with Debian 9 System Image: Versions v4.0.2 and v4.1.2, UC-8580 with Debian 9 System Image: Versions v2.0 and v2.1, UC-8540 with Debian 9 System Image: Versions v2.0 and v2.1, and DA-662C-16-LX (GLB) System Image: Versions v1.0.2 to v1.1.2 of Moxa's ARM-based computers have an execution with unnecessary privileges vulnerability, which could allow an attacker with user-level privileges to gain root privileges.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Moxa ≫ Uc-2101-lx Firmware Version >= 1.0 <= 1.12
Moxa ≫ Uc-2102-lx Firmware Version >= 1.0 <= 1.2
Moxa ≫ Uc-2104-lx Firmware Version >= 1.0 <= 1.2
Moxa ≫ Uc-2111-lx Firmware Version >= 1.0 <= 1.2
Moxa ≫ Uc-2112-lx Firmware Version >= 1.0 <= 1.2
Moxa ≫ Uc-2102-t-lx Firmware Version >= 1.0 <= 1.2
Moxa ≫ Uc-2114-t-lx Firmware Version >= 1.0 <= 1.2
Moxa ≫ Uc-2116-t-lx Firmware Version >= 1.0 <= 1.2
Moxa ≫ Uc-3101-t-us-lx Firmware Version >= 1.0 <= 1.6
Moxa ≫ Uc-3101-t-eu-lx Firmware Version >= 1.0 <= 1.6
Moxa ≫ Uc-3111-t-us-lx Firmware Version >= 1.0 <= 1.6
Moxa ≫ Uc-3111-t-eu-lx Firmware Version >= 1.0 <= 1.6
Moxa ≫ Uc-3121-t-us-lx Firmware Version >= 1.0 <= 1.6
Moxa ≫ Uc-3121-t-eu-lx Firmware Version >= 1.0 <= 1.6
Moxa ≫ Uc-3101-t-ap-lx Firmware Version >= 1.0 <= 1.6
Moxa ≫ Uc-3111-t-ap-lx Firmware Version >= 1.0 <= 1.6
Moxa ≫ Uc-3121-t-ap-lx Firmware Version >= 1.0 <= 1.6
Moxa ≫ Uc-3111-t-eu-lx-nw Firmware Version >= 1.0 <= 1.6
Moxa ≫ Uc-3111-t-ap-lx-nw Firmware Version >= 1.0 <= 1.6
Moxa ≫ Uc-3111-t-us-lx-nw Firmware Version >= 1.0 <= 1.6
Moxa ≫ Uc-5101-lx Firmware Version >= 1.0 <= 1.4
Moxa ≫ Uc-5101-t-lx Firmware Version >= 1.0 <= 1.4
Moxa ≫ Uc-5102-lx Firmware Version >= 1.0 <= 1.4
Moxa ≫ Uc-5102-t-lx Firmware Version >= 1.0 <= 1.4
Moxa ≫ Uc-5111-lx Firmware Version >= 1.0 <= 1.4
Moxa ≫ Uc-5111-t-lx Firmware Version >= 1.0 <= 1.4
Moxa ≫ Uc-5112-lx Firmware Version >= 1.0 <= 1.4
Moxa ≫ Uc-5112-t-lx Firmware Version >= 1.0 <= 1.4
Moxa ≫ Uc-8131-lx Firmware Version >= 3.0 <= 3.5
Moxa ≫ Uc-8132-lx Firmware Version >= 3.0 <= 3.5
Moxa ≫ Uc-8162-lx Firmware Version >= 3.0 <= 3.5
Moxa ≫ Uc-8112-lx Firmware Version >= 3.0 <= 3.5
Moxa ≫ Uc-8112-me-t-lx1 Firmware Version3.0
Moxa ≫ Uc-8112-me-t-lx1 Firmware Version3.1
Moxa ≫ Uc-8112-me-t-lx Firmware Version3.0
Moxa ≫ Uc-8112-me-t-lx Firmware Version3.1
Moxa ≫ Uc-8112a-me-t-lx Firmware Version >= 1.0 <= 1.6
Moxa ≫ Uc-8220-t-lx-s Firmware Version >= 1.0 <= 1.5
Moxa ≫ Uc-8220-t-lx Firmware Version >= 1.0 <= 1.5
Moxa ≫ Uc-8220-t-lx-us-s Firmware Version >= 1.0 <= 1.5
Moxa ≫ Uc-8220-t-lx-eu-s Firmware Version >= 1.0 <= 1.5
Moxa ≫ Uc-8220-t-lx-ap-s Firmware Version >= 1.0 <= 1.5
Moxa ≫ Aig-301-t-us-azu-lx Firmware Version >= 1.0 <= 1.4
Moxa ≫ Aig-301-t-eu-azu-lx Firmware Version >= 1.0 <= 1.4
Moxa ≫ Aig-301-t-ap-azu-lx Firmware Version >= 1.0 <= 1.4
Moxa ≫ Aig-301-t-cn-azu-lx Firmware Version >= 1.0 <= 1.4
Moxa ≫ Aig-301-t-azu-lx Firmware Version >= 1.0 <= 1.4
Moxa ≫ Aig-301-azu-lx Firmware Version >= 1.0 <= 1.4
Moxa ≫ Aig-301-us-azu-lx Firmware Version >= 1.0 <= 1.4
Moxa ≫ Aig-301-eu-azu-lx Firmware Version >= 1.0 <= 1.4
Moxa ≫ Aig-301-ap-azu-lx Firmware Version >= 1.0 <= 1.4
Moxa ≫ Aig-301-cn-azu-lx Firmware Version >= 1.0 <= 1.4
Moxa ≫ Uc-8410a-lx Firmware Version >= 4.0.2 <= 4.1.2
Moxa ≫ Uc-8410a-t-lx Firmware Version >= 4.0.2 <= 4.1.2
Moxa ≫ Uc-8410a-nw-lx Firmware Version >= 4.0.2 <= 4.1.2
Moxa ≫ Uc-8410a-nw-t-lx Firmware Version >= 4.0.2 <= 4.1.2
Moxa ≫ Uc-8580-lx Firmware Version2.0
Moxa ≫ Uc-8580-lx Firmware Version2.1
Moxa ≫ Uc-8580-t-lx Firmware Version2.0
Moxa ≫ Uc-8580-t-lx Firmware Version2.1
Moxa ≫ Uc-8580-t-ct-lx Firmware Version2.0
Moxa ≫ Uc-8580-t-ct-lx Firmware Version2.1
Moxa ≫ Uc-8580-q-lx Firmware Version2.0
Moxa ≫ Uc-8580-q-lx Firmware Version2.1
Moxa ≫ Uc-8580-t-q-lx Firmware Version2.0
Moxa ≫ Uc-8580-t-q-lx Firmware Version2.1
Moxa ≫ Uc-8580-t-ct-q-lx Firmware Version2.0
Moxa ≫ Uc-8580-t-ct-q-lx Firmware Version2.1
Moxa ≫ Uc-8540-lx Firmware Version2.0
Moxa ≫ Uc-8540-lx Firmware Version2.1
Moxa ≫ Uc-8540-t-lx Firmware Version2.0
Moxa ≫ Uc-8540-t-lx Firmware Version2.1
Moxa ≫ Uc-8540-t-ct-lx Firmware Version2.0
Moxa ≫ Uc-8540-t-ct-lx Firmware Version2.1
Moxa ≫ Da-662c-16-lx Firmware Version >= 1.0.2 <= 1.1.2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.05% | 0.148 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
| ics-cert@hq.dhs.gov | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
CWE-250 Execution with Unnecessary Privileges
The product performs an operation at a privilege level that is higher than the minimum level required, which creates new weaknesses or amplifies the consequences of other weaknesses.
CWE-269 Improper Privilege Management
The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.