CVE-2022-33174
Summary
| CVE | CVE-2022-33174 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-06-13 18:15:00 UTC |
| Updated | 2022-06-27 16:45:00 UTC |
| Description | Power Distribution Units running on Powertek firmware (multiple brands) before 3.30.30 allows remote authorization bypass in the web interface. To exploit the vulnerability, an attacker must send an HTTP packet to the data retrieval interface (/cgi/get_param.cgi) with the tmpToken cookie set to an empty string followed by a semicolon. This bypasses an active session authorization check. This can be then used to fetch the values of protected sys.passwd and sys.su.name fields that contain the username and password in cleartext. |
Risk And Classification
Problem Types: CWE-863
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Powertekpdus | Basic Pdu | - | All | All | All |
| Operating System | Powertekpdus | Basic Pdu Firmware | All | All | All | All |
| Hardware | Powertekpdus | Piml Pdu | - | All | All | All |
| Operating System | Powertekpdus | Piml Pdu Firmware | All | All | All | All |
| Hardware | Powertekpdus | Pm Pdu | - | All | All | All |
| Operating System | Powertekpdus | Pm Pdu Firmware | All | All | All | All |
| Hardware | Powertekpdus | Smart Pim | - | All | All | All |
| Operating System | Powertekpdus | Smart Pim Firmware | All | All | All | All |
| Hardware | Powertekpdus | Smart Pom | - | All | All | All |
| Hardware | Powertekpdus | Smart Poms | - | All | All | All |
| Operating System | Powertekpdus | Smart Poms Firmware | All | All | All | All |
| Operating System | Powertekpdus | Smart Pom Firmware | All | All | All | All |
| Hardware | Powertekpdus | Smart Pos | - | All | All | All |
| Operating System | Powertekpdus | Smart Pos Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Screams of Power vulnerabilities (Powertek-based PDUs) - gynvael.coldwind//vx.log | MISC | gynvael.coldwind.pl | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.