CVSS v3
8.8
HIGH
Score EPSS
2.5 %
probabilité d’exploitation
CISA KEV
Non
exploitation connue
Exploitation
—
statut SSVC
Description
A CSRF issue in /api/crontab on iRZ Mobile Routers through 2022-03-16 allows a threat actor to create a crontab entry in the router administration panel. The cronjob will consequently execute the entry on the threat actor's defined interval, leading to remote code execution, allowing the threat actor to gain filesystem access. In addition, if the router's default credentials aren't rotated or a threat actor discovers valid credentials, remote code execution can be achieved without user interaction.
Détails techniques
- Publiée le
- 2022-03-19
- Exploit-DB
- EDB-50832
Questions fréquentes
Qu’est-ce que CVE-2022-27226 ?
A CSRF issue in /api/crontab on iRZ Mobile Routers through 2022-03-16 allows a threat actor to create a crontab entry in the router administration panel. The cronjob will consequently execute the entry on the threat actor's defined interval, leading to remote code execution, allowing the threat actor to gain filesystem access. In addition, if the router's default credentials aren't rotated or a threat actor discovers valid credentials, remote code execution can be achieved without user interaction.
CVE-2022-27226 est-elle activement exploitée ?
Aucune exploitation active de CVE-2022-27226 n’est confirmée. Le score EPSS est de 2.5 %, soit la probabilité estimée d’exploitation dans les 30 prochains jours.
Quel est le score CVSS de CVE-2022-27226 ?
CVE-2022-27226 a un score de base CVSS v3 de 8.8 (gravité HIGH).
CVE-2022-27226 touche-t-elle votre environnement ?
Utilisez isMalicious pour vérifier si l’une de vos IP ou l’un de vos domaines est associé aux IOC de cette vulnérabilité.
Sans carte bancaire · 500 vérifications gratuites par mois · Clé API gratuite
Autres vulnérabilités 2022 à trier
Classées par probabilité d’exploitation (EPSS).