AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2022-42787

HIGH · CVSS 8.8 EPSS 0.73%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-11-10 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 8.8. It may be remotely exploitable.

CVE
CVE-2022-42787
Severity
HIGH
CVSS
8.8
EPSS
0.73%

Original NVD Description

Multiple W&T products of the Comserver Series use a small number space for allocating sessions ids. After login of an user an unathenticated remote attacker can brute force the users session id and get access to his account on the the device. As the user needs to log in for the attack to be successful a user interaction is required.

Related CVEs

Other vulnerabilities affecting the same vendor(s)