8.8
CVE-2022-47531
- EPSS 0.06%
- Veröffentlicht 05.12.2023 06:15:48
- Zuletzt bearbeitet 21.11.2024 07:32:09
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
An issue was discovered in Ericsson Evolved Packet Gateway (EPG) versions 3.x before 3.25 and 2.x before 2.16, allows authenticated users to bypass system CLI and execute commands they are authorized to execute directly in the UNIX shell.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ericsson ≫ Evolved Packet Gateway Version >= 2.0 < 2.16
Ericsson ≫ Evolved Packet Gateway Version >= 3.0 < 3.25
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.06% | 0.188 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 8.8 | 2.8 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|