CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.9. Its EPSS score suggests a 18.0% probability of exploitation in the next 30 days. Exploitation may require the attacker to be authenticated.
CVE
CVE-2022-1401
Severity
MEDIUM
CVSS
6.9
EPSS
18.00%
Original NVD Description
Improper Access Control vulnerability in the /Exago/WrImageResource.adx route as used in Device42 Asset Management Appliance allows an unauthenticated attacker to read sensitive server files with root permissions. This issue affects: Device42 CMDB versions prior to 18.01.00.
Related CVEs
Other vulnerabilities affecting the same vendor(s)