Vulnerability Details CVE-2022-25250
When connecting to a certain port Axeda agent (All versions) and Axeda Desktop Server for Windows (All versions) may allow an attacker to send a certain command to a specific port without authentication. Successful exploitation of this vulnerability could allow a remote unauthenticated attacker to shut down a specific service.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 69.5%
CVSS Severity
CVSS v3 Score 7.5
CVSS v2 Score 5.0
Products affected by CVE-2022-25250
-
cpe:2.3:a:ptc:axeda_agent:-
-
cpe:2.3:a:ptc:axeda_agent:6.9.0
-
cpe:2.3:a:ptc:axeda_desktop_server:-