CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.4. It affects Java.
CVE
CVE-2022-2105
Severity
CRITICAL
CVSS
9.4
EPSS
1.01%
Java
Original NVD Description
Client-side JavaScript controls may be bypassed to change user credentials and permissions without authentication, including a “root” user level meant only for the vendor. Web server root level access allows for changing of safety critical parameters.
Related CVEs
Other vulnerabilities affecting the same vendor(s)