Vulnerability Details CVE-2022-45853
The privilege escalation vulnerability in the Zyxel GS1900-8 firmware version
V2.70(AAHH.3) and the GS1900-8HP firmware version V2.70(AAHI.3) could allow an authenticated, local attacker with administrator privileges to execute some system commands as 'root' on a vulnerable device via SSH.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 7.0%
CVSS Severity
CVSS v3 Score 6.7
Products affected by CVE-2022-45853
-
cpe:2.3:h:zyxel:gs1900-10hp:-
-
cpe:2.3:h:zyxel:gs1900-16:-
-
cpe:2.3:h:zyxel:gs1900-24:-
-
cpe:2.3:h:zyxel:gs1900-24e:-
-
cpe:2.3:h:zyxel:gs1900-24ep:-
-
cpe:2.3:h:zyxel:gs1900-24hpv2:-
-
cpe:2.3:h:zyxel:gs1900-48:-
-
cpe:2.3:h:zyxel:gs1900-48hpv2:-
-
cpe:2.3:h:zyxel:gs1900-8:-
-
cpe:2.3:h:zyxel:gs1900-8hp:-
-
cpe:2.3:o:zyxel:gs1900-10hp_firmware:2.70(aazi.3)
-
cpe:2.3:o:zyxel:gs1900-16_firmware:2.70(aahj.3)
-
cpe:2.3:o:zyxel:gs1900-24_firmware:2.70(aahl.3)
-
cpe:2.3:o:zyxel:gs1900-24e_firmware:2.70(aahk.3)
-
cpe:2.3:o:zyxel:gs1900-24ep_firmware:2.70(abto.3)
-
cpe:2.3:o:zyxel:gs1900-24hpv2_firmware:2.70(abtp.3)
-
cpe:2.3:o:zyxel:gs1900-48_firmware:2.70(aahn.3)
-
cpe:2.3:o:zyxel:gs1900-48hpv2_firmware:2.70(abtq.3)
-
cpe:2.3:o:zyxel:gs1900-8_firmware:2.70(aahh.3)
-
cpe:2.3:o:zyxel:gs1900-8hp_firmware:2.70(aahi.3)