CVE-2022-37122

Scores

EPSS

0.709medium70.9%
0%20%40%60%80%100%

Percentile: 70.9%

CVSS

7.5high3.x
0246810

CVSS Score: 7.5/10

All CVSS Scores

CVSS 3.x
7.5

Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Description

Carel pCOWeb HVAC BACnet Gateway 2.1.0, Firmware: A2.1.0 - B2.1.0, Application Software: 2.15.4A Software v16 13020200 suffers from an unauthenticated arbitrary file disclosure vulnerability. Input passed through the ‘file’ GET parameter through the ‘logdownload.cgi’ Bash script is not properly verified before being used to download log files. This can be exploited to disclose the contents of arbitrary and sensitive files via directory traversal attacks.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

nvd

CWEs

CWE-22

Exploits

Exploit ID: CVE-2022-37122

Source: github-poc

URL: https://github.com/bughuntar/CVE-2022-37122-Exploit

Vulnerable Software (3)

Type: Configuration

Vendor: *

Product: applica

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:carel:applica:2.154a:*:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:carel:applica:16_13020200:*:*:*:*:*:*:*",...

Source: nvd

Type: Configuration

Vendor: *

Product: pcoweb_card_firmware

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:o:carel:pcoweb_card_firmware:*:*:*:*:*:*:*:*",          "versionEndIncluding": "b.2.1.0",          "versionStart...

Source: nvd

Type: Configuration

Vendor: *

Product: pcoweb_hvac_bacnet_gateway

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:carel:applica:2.154a:*:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:carel:applica:16_13020200:*:*:*:*:*:*:*",...

Source: nvd

End of list