CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 10.0. It may be remotely exploitable. Exploitation may require the attacker to be authenticated.
CVE
CVE-2022-31491
Severity
CRITICAL
CVSS
10
EPSS
0.80%
Original NVD Description
Voltronic Power ViewPower through 1.04-24215, ViewPower Pro through 2.0-22165, and PowerShield Netguard before 1.04-23292 allows a remote attacker to run arbitrary code via an unspecified web interface related to detection of a managed UPS shutting down. An unauthenticated attacker can use this to run arbitrary code immediately regardless of any managed UPS state or presence.