CVE-2022-31269
HIGH 8.2EPSS 7.0%
Nortek Linear eMerge E3-Series devices through 0.32-09c place admin credentials in /test.txt that allow an attacker to open a building's doors. (This occurs in situations where the CVE-2019-7271 default credentials have been changed.)
- CVSS v3.1
- 8.2 HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:N - EPSS
- 6.99% chance of exploitation in the next 30 days, 94th percentile
- Nuclei
- high · CWE-798
- Published
- 2022-08-25
- Updated
- 2024-08-03
Proof-of-concept exploits (4)
- http://packetstormsecurity.com/files/167990/Nortek-Linear-eMerge-E3-Series-Credential-Dis…
- https://gist.github.com/omarhashem123/71ec9223e90ea76a76096d777d9b945c
- Henry4E36/CVE-2022-312691★ · 2022-08-14
- omarhashem123/CVE-2022-312691★ · 2022-11-06