VulnerabilityModified
CVE-2022-1661
The affected products are vulnerable to directory traversal, which may allow an attacker to obtain arbitrary operating system files.
HIGH 7.5EPSS 15.9%
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 15.9%, higher than 97% of all known CVEs. Patch or mitigate before the next change window.
Description
The affected products are vulnerable to directory traversal, which may allow an attacker to obtain arbitrary operating system files.
- CVSS 3.1
- 7.5 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
- EPSS
- 15.87% probability · 97th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-23, CWE-22
- Affected
- keysight/n6854a firmware · keysight/n6841a rf firmware
- Source
- ics-cert@hq.dhs.gov
References
- https://www.cisa.gov/uscert/ics/advisories/icsa-22-146-01Third Party Advisory, US Government Resource
- https://www.cisa.gov/uscert/ics/advisories/icsa-22-146-01Third Party Advisory, US Government Resource
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.