NA

CVE-2022-3186

Published: 21/12/2022 Updated: 07/11/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Dataprobe iBoot-PDU FW versions before 1.42.06162022 contain a vulnerability where the affected product allows an malicious user to access the device’s main management page from the cloud. This feature enables users to remotely connect devices, however, the current implementation permits users to access other device's information.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

dataprobe iboot-pdu4-n20 firmware

dataprobe iboot-pdu4sa-n15 firmware

dataprobe iboot-pdu4a-n15 firmware

dataprobe iboot-pdu4sa-n20 firmware

dataprobe iboot-pdu4a-n20 firmware

dataprobe iboot-pdu8sa-n15 firmware

dataprobe iboot-pdu8a-n15 firmware

dataprobe iboot-pdu8sa-2n15 firmware

dataprobe iboot-pdu8a-2n15 firmware

dataprobe iboot-pdu8sa-n20 firmware

dataprobe iboot-pdu8a-n20 firmware

dataprobe iboot-pdu8a-2n20 firmware

ICS Advisories

Dataprobe iBoot-PDU
Critical Infrastructure Sectors: Critical Manufacturing