CVE-2022-3189
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where a specially crafted PHP script could use parameters from a HTTP request to create a URL capable of changing the host parameter. The changed host parameter in the HTTP could point to another host that will send a request to the host or IP specified in the changed host parameter.
Las versiones de FW de Dataprobe iBoot-PDU anteriores a 1.42.06162022 contienen una vulnerabilidad en la que un script PHP especialmente manipulado podría usar parámetros de una solicitud HTTP para crear una URL capaz de cambiar el parámetro del host. El parámetro de host modificado en HTTP podría apuntar a otro host que enviará una solicitud al host o IP especificado en el parámetro de host modificado.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2022-09-12 CVE Reserved
- 2022-12-21 CVE Published
- 2024-07-13 EPSS Updated
- 2024-08-03 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-918: Server-Side Request Forgery (SSRF)
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.cisa.gov/uscert/ics/advisories/icsa-22-263-03 | 2023-11-07 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Dataprobe Search vendor "Dataprobe" | Iboot-pdu4-n20 Firmware Search vendor "Dataprobe" for product "Iboot-pdu4-n20 Firmware" | < 1.42.06162022 Search vendor "Dataprobe" for product "Iboot-pdu4-n20 Firmware" and version " < 1.42.06162022" | - |
Affected
| in | Dataprobe Search vendor "Dataprobe" | Iboot-pdu4-n20 Search vendor "Dataprobe" for product "Iboot-pdu4-n20" | - | - |
Safe
|
Dataprobe Search vendor "Dataprobe" | Iboot-pdu4sa-n15 Firmware Search vendor "Dataprobe" for product "Iboot-pdu4sa-n15 Firmware" | < 1.42.06162022 Search vendor "Dataprobe" for product "Iboot-pdu4sa-n15 Firmware" and version " < 1.42.06162022" | - |
Affected
| in | Dataprobe Search vendor "Dataprobe" | Iboot-pdu4sa-n15 Search vendor "Dataprobe" for product "Iboot-pdu4sa-n15" | - | - |
Safe
|
Dataprobe Search vendor "Dataprobe" | Iboot-pdu4a-n15 Firmware Search vendor "Dataprobe" for product "Iboot-pdu4a-n15 Firmware" | < 1.42.06162022 Search vendor "Dataprobe" for product "Iboot-pdu4a-n15 Firmware" and version " < 1.42.06162022" | - |
Affected
| in | Dataprobe Search vendor "Dataprobe" | Iboot-pdu4a-n15 Search vendor "Dataprobe" for product "Iboot-pdu4a-n15" | - | - |
Safe
|
Dataprobe Search vendor "Dataprobe" | Iboot-pdu4sa-n20 Firmware Search vendor "Dataprobe" for product "Iboot-pdu4sa-n20 Firmware" | < 1.42.06162022 Search vendor "Dataprobe" for product "Iboot-pdu4sa-n20 Firmware" and version " < 1.42.06162022" | - |
Affected
| in | Dataprobe Search vendor "Dataprobe" | Iboot-pdu4sa-n20 Search vendor "Dataprobe" for product "Iboot-pdu4sa-n20" | - | - |
Safe
|
Dataprobe Search vendor "Dataprobe" | Iboot-pdu4a-n20 Firmware Search vendor "Dataprobe" for product "Iboot-pdu4a-n20 Firmware" | < 1.42.06162022 Search vendor "Dataprobe" for product "Iboot-pdu4a-n20 Firmware" and version " < 1.42.06162022" | - |
Affected
| in | Dataprobe Search vendor "Dataprobe" | Iboot-pdu4a-n20 Search vendor "Dataprobe" for product "Iboot-pdu4a-n20" | - | - |
Safe
|
Dataprobe Search vendor "Dataprobe" | Iboot-pdu8sa-n15 Firmware Search vendor "Dataprobe" for product "Iboot-pdu8sa-n15 Firmware" | < 1.42.06162022 Search vendor "Dataprobe" for product "Iboot-pdu8sa-n15 Firmware" and version " < 1.42.06162022" | - |
Affected
| in | Dataprobe Search vendor "Dataprobe" | Iboot-pdu8sa-n15 Search vendor "Dataprobe" for product "Iboot-pdu8sa-n15" | - | - |
Safe
|
Dataprobe Search vendor "Dataprobe" | Iboot-pdu8a-n15 Firmware Search vendor "Dataprobe" for product "Iboot-pdu8a-n15 Firmware" | < 1.42.06162022 Search vendor "Dataprobe" for product "Iboot-pdu8a-n15 Firmware" and version " < 1.42.06162022" | - |
Affected
| in | Dataprobe Search vendor "Dataprobe" | Iboot-pdu8a-n15 Search vendor "Dataprobe" for product "Iboot-pdu8a-n15" | - | - |
Safe
|
Dataprobe Search vendor "Dataprobe" | Iboot-pdu8sa-2n15 Firmware Search vendor "Dataprobe" for product "Iboot-pdu8sa-2n15 Firmware" | < 1.42.06162022 Search vendor "Dataprobe" for product "Iboot-pdu8sa-2n15 Firmware" and version " < 1.42.06162022" | - |
Affected
| in | Dataprobe Search vendor "Dataprobe" | Iboot-pdu8sa-2n15 Search vendor "Dataprobe" for product "Iboot-pdu8sa-2n15" | - | - |
Safe
|
Dataprobe Search vendor "Dataprobe" | Iboot-pdu8a-2n15 Firmware Search vendor "Dataprobe" for product "Iboot-pdu8a-2n15 Firmware" | < 1.42.06162022 Search vendor "Dataprobe" for product "Iboot-pdu8a-2n15 Firmware" and version " < 1.42.06162022" | - |
Affected
| in | Dataprobe Search vendor "Dataprobe" | Iboot-pdu8a-2n15 Search vendor "Dataprobe" for product "Iboot-pdu8a-2n15" | - | - |
Safe
|
Dataprobe Search vendor "Dataprobe" | Iboot-pdu8sa-n20 Firmware Search vendor "Dataprobe" for product "Iboot-pdu8sa-n20 Firmware" | < 1.42.06162022 Search vendor "Dataprobe" for product "Iboot-pdu8sa-n20 Firmware" and version " < 1.42.06162022" | - |
Affected
| in | Dataprobe Search vendor "Dataprobe" | Iboot-pdu8sa-n20 Search vendor "Dataprobe" for product "Iboot-pdu8sa-n20" | - | - |
Safe
|
Dataprobe Search vendor "Dataprobe" | Iboot-pdu8a-n20 Firmware Search vendor "Dataprobe" for product "Iboot-pdu8a-n20 Firmware" | < 1.42.06162022 Search vendor "Dataprobe" for product "Iboot-pdu8a-n20 Firmware" and version " < 1.42.06162022" | - |
Affected
| in | Dataprobe Search vendor "Dataprobe" | Iboot-pdu8a-n20 Search vendor "Dataprobe" for product "Iboot-pdu8a-n20" | - | - |
Safe
|
Dataprobe Search vendor "Dataprobe" | Iboot-pdu8a-2n20 Firmware Search vendor "Dataprobe" for product "Iboot-pdu8a-2n20 Firmware" | < 1.42.06162022 Search vendor "Dataprobe" for product "Iboot-pdu8a-2n20 Firmware" and version " < 1.42.06162022" | - |
Affected
| in | Dataprobe Search vendor "Dataprobe" | Iboot-pdu8a-2n20 Search vendor "Dataprobe" for product "Iboot-pdu8a-2n20" | - | - |
Safe
|