Vulnerability Details CVE-2022-32429
An authentication-bypass issue in the component http://MYDEVICEIP/cgi-bin-sdb/ExportSettings.sh of Mega System Technologies Inc MSNSwitch MNT.2408 allows unauthenticated attackers to arbitrarily configure settings within the application, leading to remote code execution.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.888
EPSS Ranking 99.5%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2022-32429
-
cpe:2.3:h:megatech:msnswitch:-
-
cpe:2.3:o:megatech:msnswitch_firmware:mnt.2408