SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2022-3086

Cradlepoint IBR600 NCOS versions 6.5.0.160bc2e and prior are vulnerable to shell escape, which enables local attackers with non-superuser credentials to gain full, unrestrictive shell access which may allow an attacker to execute arbitrary code.

HIGH 7.6EPSS 0.32%

Does this matter?

High impact if exploited, but EPSS currently rates exploitation as unlikely (0.32%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.

Description

Cradlepoint IBR600 NCOS versions 6.5.0.160bc2e and prior are vulnerable to shell escape, which enables local attackers with non-superuser credentials to gain full, unrestrictive shell access which may allow an attacker to execute arbitrary code.

CVSS 3.1
7.6 HIGHCVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
EPSS
0.32% probability · 24th percentile
CISA KEV
Not listed
Weakness
CWE-77
Affected
moxa/uc-8580-t-lx firmware · moxa/uc-8580-t-ct-lx firmware · moxa/uc-8580-t-q-lx firmware · moxa/uc-8580-t-ct-q-lx firmware · moxa/uc-8580-q-lx firmware · moxa/uc-8580-lx firmware · moxa/uc-8540-lx firmware · moxa/uc-8540-t-ct-lx firmware · moxa/uc-8540-t-lx firmware · moxa/uc-8410a-lx firmware · moxa/uc-8410a-nw-lx firmware · moxa/uc-8410a-nw-t-lx firmware · moxa/uc-8410a-t-lx firmware · moxa/uc-8210-t-lx-s firmware · moxa/uc-8220-t-lx firmware · moxa/uc-8220-t-lx-us-s firmware · moxa/uc-8220-t-lx-eu-s firmware · moxa/uc-8220-t-lx-ap-s firmware · moxa/uc-8112a-me-t-lx firmware · moxa/uc-8131-lx firmware · +30 more
Source
ics-cert@hq.dhs.gov

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.