CyberRota
Live Feed
Return to register
Case File

CVE-2022-25213

MEDIUM · CVSS 6.8 EPSS 0.37%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-03-10 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2022-25213
Severity
MEDIUM
CVSS
6.8
EPSS
0.37%

Original Filing — NVD Description

Improper physical access control and use of hard-coded credentials in /etc/passwd permits an attacker with physical access to obtain a root shell via an unprotected UART port on the device. The same port exposes an unauthenticated Das U-Boot BIOS shell.