logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2022-3229

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2022-3229

Description:
Because the web management interface for Unified Intents' Unified Remote solution does not itself require authentication, a remote, unauthenticated attacker can change or disable authentication requirements for the Unified Remote protocol, and leverage this now-unauthenticated access to run code of the attacker's choosing.
Last updated date:
02/15/2023
Type:
exploit
Confidence:
HIGH
Date of publishing:
09/20/2022
Reference url to background

https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/misc/unified_remote_rce.rb

Type:
exploit
Confidence:
HIGH
Date of publishing:
02/15/2023
Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy