9.8
CVSSv3

CVE-2022-43325

Published: 02/12/2022 Updated: 05/12/2022
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

An unauthenticated command injection vulnerability in the product license validation function of Telos Alliance Omnia MPX Node 1.3.* - 1.4.* allows malicious users to execute arbitrary commands via a crafted payload injected into the license input.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

telosalliance omnia mpx node firmware 1.3.37

telosalliance omnia mpx node firmware 1.3.35