Sploitus

CVE-2022-31749

4 known exploits for CVE-2022-31749

An argument injection vulnerability in the diagnose and import pac commands in WatchGuard Fireware OS before 12.8.1, 12.1.4, and 12.5.10 allows an authenticated remote attacker with unprivileged credentials to upload or read files to limited, arbitrary locations on WatchGuard Firebox and XTM appliances

Affected products
Watchguard Fireware
Fix
Available
CVSS 3.1
6.5 MEDIUM
EPSS
1.3% (68th percentile)
Weakness
CWE-88
NVD status
Deferred
Published
2025-01-27
Attack patterns
CAPEC-6
CVE-2022-31749 at NVD
Authoritative description, scoring and affected products

4 known exploits for CVE-2022-31749

Proof-of-concept code and exploit modules indexed by Sploitus