Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where...
Vulnerability Description
Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where the affected product allows an attacker to access the device’s main management page from the cloud. This feature enables users to remotely connect devices, however, the current implementation permits users to access other device's information.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-3186
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Uri Katz
- Claroty Research
More from Dataprobe
View All →Affected Vendor
Dataprobe
View all reports →