
CVE-2022-31499
- Reference to the description:
- Description:
- Nortek Linear eMerge E3-Series devices before 0.32-08f allow an unauthenticated attacker to inject OS commands via ReaderNo. NOTE: this issue exists because of an incomplete fix for CVE-2019-7256.
- Last updated date:
- 09/02/2022
Reports

ACTIVELY EXPLOITED
- Type:
- exploitation
- Confidence:
- HIGH
- Date of publishing:
- 01/12/2023
- Reference url to background
https://unit42.paloaltonetworks.com/network-security-trends-aug-oct-2022/#post-126517-_hcrsbpc3e3r0
- Type:
- exploit
- Confidence:
- HIGH
- Date of publishing:
- 09/02/2022
- Reference url to background
http://packetstormsecurity.com/files/167991/Nortek-Linear-eMerge-E3-Series-Command-Injection.html
- Type:
- exploit
- Confidence:
- HIGH
- Date of publishing:
- 09/02/2022
- Reference url to background
https://gist.github.com/omarhashem123/5f0c6f1394099b555740fdc5c7651ee2