HIGH

CVE-2022-31269

CVSS v3

8.2

HIGH

EPSS Score

81.0%

exploit probability

CISA KEV

No

known exploited

Exploitation

SSVC status

Description

Nortek Linear eMerge E3-Series devices through 0.32-09c place admin credentials in /test.txt that allow an attacker to open a building's doors. (This occurs in situations where the CVE-2019-7271 default credentials have been changed.)

Technical details

Published
8/25/2022

Frequently asked questions

What is CVE-2022-31269?

Nortek Linear eMerge E3-Series devices through 0.32-09c place admin credentials in /test.txt that allow an attacker to open a building's doors. (This occurs in situations where the CVE-2019-7271 default credentials have been changed.)

Is CVE-2022-31269 actively exploited?

Active exploitation of CVE-2022-31269 has not been confirmed. The EPSS score is 81.0%, indicating the estimated probability of exploitation in the next 30 days.

What is the CVSS score for CVE-2022-31269?

CVE-2022-31269 has a CVSS v3 base score of 8.2 (HIGH severity).

Is CVE-2022-31269 affecting your environment?

Use isMalicious to check if any of your IPs or domains are associated with this vulnerability's IOCs.