CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. See the original NVD description below for full technical details.
CVE
CVE-2022-30310
Severity
CRITICAL
CVSS
9.8
EPSS
2.48%
Original NVD Description
In Festo Controller CECC-X-M1 product family in multiple versions, the http-endpoint "cecc-x-acknerr-request" POST request doesn’t check for port syntax. This can result in unauthorized execution of system commands with root privileges due to improper access control command injection.
Related CVEs
Other vulnerabilities affecting the same vendor(s)