← Back to browse · API

CVE-2022-44149

Severity
HIGH
CVSS
8.8
EPSS
0.64354
Risk score
57.72
CISA KEV
No
PoC
No
Published
2023-01-06
Modified
2025-04-09
First seen
2026-08-07
Aliases
EUVD-2022-47099, GHSA-8M32-3CXW-HM8C
Products
n/a:n/a n/a
Sources
euvd EUVD-2022-47099

Description

The web service on Nexxt Amp300 ARN02304U8 42.103.1.5095 and 80.103.2.5045 devices allows remote OS command execution by placing &telnetd in the JSON host field to the ping feature of the goform/sysTools component. Authentication is required

References