First published: Fri Mar 31 2023(Updated: )
Generex UPS CS141 below 2.06 version, could allow a remote attacker to upload a firmware file containing a file with modified permissions, allowing him to escalate privileges.
Credit: cve-coordination@incibe.es
Affected Software | Affected Version | How to fix |
---|---|---|
Generex Cs141 Firmware | <2.06 | |
Generex CS141 |
This vulnerability has been fixed by Generex team in CS141 version 2.12, released on December 2022.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-47191 is a vulnerability in Generex UPS CS141 below version 2.06 that allows a remote attacker to upload a firmware file containing a file with modified permissions, enabling privilege escalation.
CVE-2022-47191 has a severity score of 8.8 (high severity).
Generex UPS CS141 versions below 2.06 are affected by CVE-2022-47191.
A remote attacker can exploit the CVE-2022-47191 vulnerability by uploading a firmware file containing a file with modified permissions.
Yes, you can find more information about CVE-2022-47191 at the following references: [Reference 1](https://www.generex.de/support/changelogs/cs141/2-12), [Reference 2](https://www.generex.de/support/changelogs/cs141/page:2), [Reference 3](https://www.incibe-cert.es/en/early-warning/ics-advisories/update-03032023-multiple-vulnerabilities-generex-ups-cs141).