← Back to browse · API

CVE-2022-2634

Severity
CRITICAL
CVSS
10.0
EPSS
0.0095
Risk score
40.33
CISA KEV
No
PoC
No
Published
2022-08-09
Modified
2025-04-16
First seen
2026-08-07
Aliases
EUVD-2022-34881, GHSA-RPMR-9M52-WM2F
Products
Digi:ConnectPort X2D All manufactured prior to 01/2020
Sources
euvd EUVD-2022-34881

Description

An attacker may be able to execute malicious actions due to the lack of device access protections and device permissions when using the web application. This could lead to uploading python files which can be later executed.

References