CVE-2022-3186
Summary
| CVE | CVE-2022-3186 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-12-21 23:15:00 UTC |
| Updated | 2023-11-07 03:50:00 UTC |
| Description | Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where the affected product allows an attacker to access the device’s main management page from the cloud. This feature enables users to remotely connect devices, however, the current implementation permits users to access other device's information. |
Risk And Classification
Problem Types: NVD-CWE-Other
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Dataprobe | Iboot-pdu4-n20 | - | All | All | All |
| Operating System | Dataprobe | Iboot-pdu4-n20 Firmware | All | All | All | All |
| Hardware | Dataprobe | Iboot-pdu4a-n15 | - | All | All | All |
| Operating System | Dataprobe | Iboot-pdu4a-n15 Firmware | All | All | All | All |
| Hardware | Dataprobe | Iboot-pdu4a-n20 | - | All | All | All |
| Operating System | Dataprobe | Iboot-pdu4a-n20 Firmware | All | All | All | All |
| Hardware | Dataprobe | Iboot-pdu4sa-n15 | - | All | All | All |
| Operating System | Dataprobe | Iboot-pdu4sa-n15 Firmware | All | All | All | All |
| Hardware | Dataprobe | Iboot-pdu4sa-n20 | - | All | All | All |
| Operating System | Dataprobe | Iboot-pdu4sa-n20 Firmware | All | All | All | All |
| Hardware | Dataprobe | Iboot-pdu8a-2n15 | - | All | All | All |
| Operating System | Dataprobe | Iboot-pdu8a-2n15 Firmware | All | All | All | All |
| Hardware | Dataprobe | Iboot-pdu8a-2n20 | - | All | All | All |
| Operating System | Dataprobe | Iboot-pdu8a-2n20 Firmware | All | All | All | All |
| Hardware | Dataprobe | Iboot-pdu8a-n15 | - | All | All | All |
| Operating System | Dataprobe | Iboot-pdu8a-n15 Firmware | All | All | All | All |
| Hardware | Dataprobe | Iboot-pdu8a-n20 | - | All | All | All |
| Operating System | Dataprobe | Iboot-pdu8a-n20 Firmware | All | All | All | All |
| Hardware | Dataprobe | Iboot-pdu8sa-2n15 | - | All | All | All |
| Operating System | Dataprobe | Iboot-pdu8sa-2n15 Firmware | All | All | All | All |
| Hardware | Dataprobe | Iboot-pdu8sa-n15 | - | All | All | All |
| Operating System | Dataprobe | Iboot-pdu8sa-n15 Firmware | All | All | All | All |
| Hardware | Dataprobe | Iboot-pdu8sa-n20 | - | All | All | All |
| Operating System | Dataprobe | Iboot-pdu8sa-n20 Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Dataprobe iBoot-PDU | CISA | MISC | www.cisa.gov | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.