peter bassill · operator
$ cve CVE-2022-2591 JSON

CVE-2022-2591 EXPLOIT

7.5
HIGH · CVSS 3.1 · EPSS 8.9% (pctl 95)

Patch early

A public exploit exists.

Description

A vulnerability classified as critical has been found in TEM FLEX-1085 1.6.0. Affected is an unknown function of the file /sistema/flash/reboot. The manipulation leads to denial of service. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

Scoring

CVSS7.5 (HIGH, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS8.9% — more likely to be exploited than 95% of all CVEs
WeaknessCWE-404
On CISA KEVno
Public exploityes
Published2022-08-01
Last modified2026-06-17

Affected (2)

VendorProduct
temflex-1085
temflex-1085 firmware

Public exploits

SourceTitleDate
exploit-dbFLEX 1080 < 1085 Web 1.6.0 - Denial of Service2023-05-13

References

→ the Explorer  ·  watch your stack  ·  NVD