PT-2023-14808 · Nexxt · Nexxt Nebula 1200-Ac

Yerodin

·

Published

2023-07-06

·

Updated

2023-07-12

·

CVE-2022-46080

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Nexxt Nebula 1200-AC version 15.03.06.60
Description The issue allows authentication bypass and command execution by utilizing the HTTPD service to enable TELNET.
Recommendations For version 15.03.06.60, consider disabling the HTTPD service or restricting its use to prevent TELNET enablement until a patch is available.

Exploit

Fix

Incorrect Authorization

Weakness Enumeration

Related Identifiers

CVE-2022-46080

Affected Products

Nexxt Nebula 1200-Ac