Back to Database
Status published
Unknown
CVE-2022-42055
Multiple command injection vulnerabilities in GL.iNet GoodCloud IoT Device Management...
Vulnerability Description
Multiple command injection vulnerabilities in GL.iNet GoodCloud IoT Device Management System Version 1.00.220412.00 via the ping and traceroute tools allow attackers to read arbitrary files on the system.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-42055
Credits & Attribution
No credits recorded in the NVD database.
References
More from gl-inet
View All →CVE-2022-44212
In GL.iNet Goodcloud 1.0, insecure design allows remote attacker to...
Unknown
0
CVE-2022-44211
In GL.iNet Goodcloud 1.1 Incorrect access control allows a remote...
Unknown
0
CVE-2022-42054
Multiple stored cross-site scripting (XSS) vulnerabilities in GL.iNet GoodCloud IoT...
Unknown
0
CVE-2022-31898
gl-inet GL-MT300N-V2 Mango v3.212 and GL-AX1800 Flint v3.214 were discovered...
Unknown
0
CVE-2021-44148
GL.iNet GL-AR150 2.x before 3.x devices, configured as repeaters, allow...
Medium
6.1
Affected Vendor
gl-inet
View all reports →Affected Software
goodcloud
Vulnerable Versions:
1.00.220412.00
Timeline
Official Publish:
October 27th, 2022
Last Modified:
May 7th, 2025
Added to House:
July 21st, 2026
CVSS Vectors
No vector data available
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.