CVE Feed

    Dashboard / CVE / CVE-2022-27632

    CVE-2022-27632

    Cross-site request forgery (CSRF) vulnerability in Rebooter(WATCH BOOT nino RPC-M2C [End of Sale] all firmware versions, WATCH BOOT light RPC-M5C [End of Sale] all firmware versions, WATCH BOOT L-zero RPC-M4L [End of Sale] all firmware versions, WATCH BOOT mini RPC-M4H [End of Sale] all firmware versions, WATCH BOOT nino RPC-M2CS firmware version 1.00A to 1.00D, WATCH BOOT light RPC-M5CS firmware version 1.00A to 1.00D, WATCH BOOT L-zero RPC-M4LS firmware version 1.00A to 1.20A, and Signage Rebooter RPC-M4HSi firmware version 1.00A), PoE Rebooter(PoE BOOT nino PoE8M2 firmware version 1.00A to 1.20A), Scheduler(TIME BOOT mini RSC-MT4H [End of Sale] all firmware versions, TIME BOOT RSC-MT8F [End of Sale] all firmware versions, TIME BOOT RSC-MT8FP [End of Sale] all firmware versions, TIME BOOT mini RSC-MT4HS firmware version 1.00A to 1.10A, and TIME BOOT RSC-MT8FS firmware version 1.00A to 1.00E), and Contact Converter(POSE SE10-8A7B1 firmware version 1.00A to 1.20A) allows a remote attacker to hijack the authentication of an administrator and conduct arbitrary operations by having a user to view a specially crafted page.

    Published:May 18, 2022
    Last Modified:Nov 21, 2024
    EPS:May 18, 2022
    EPSS Score:0.00094
    CVSS Score:8.8

    Affected Products

    Vendor
    Meikyo
    Product
    Poe Boot Nino Poe8m2
    Vendor
    Meikyo
    Product
    Poe Boot Nino Poe8m2 Firmware
    Vendor
    Meikyo
    Product
    Pose Se10-8a7b1
    Vendor
    Meikyo
    Product
    Pose Se10-8a7b1 Firmware
    Vendor
    Meikyo
    Product
    Signage Rebooter Rpc-m4hsi
    Vendor
    Meikyo
    Product
    Signage Rebooter Rpc-m4hsi Firmware
    Vendor
    Meikyo
    Product
    Time Boot Mini Rsc-mt4h
    Vendor
    Meikyo
    Product
    Time Boot Mini Rsc-mt4h Firmware
    Vendor
    Meikyo
    Product
    Time Boot Mini Rsc-mt4hs
    Vendor
    Meikyo
    Product
    Time Boot Mini Rsc-mt4hs Firmware
    Vendor
    Meikyo
    Product
    Time Boot Rsc-mt8f
    Vendor
    Meikyo
    Product
    Time Boot Rsc-mt8f Firmware
    Vendor
    Meikyo
    Product
    Time Boot Rsc-mt8fp
    Vendor
    Meikyo
    Product
    Time Boot Rsc-mt8fp Firmware
    Vendor
    Meikyo
    Product
    Time Boot Rsc-mt8fs
    Vendor
    Meikyo
    Product
    Time Boot Rsc-mt8fs Firmware
    Vendor
    Meikyo
    Product
    Watch Boot L-zero Rpc-m4l
    Vendor
    Meikyo
    Product
    Watch Boot L-zero Rpc-m4l Firmware
    Vendor
    Meikyo
    Product
    Watch Boot L-zero Rpc-m4ls
    Vendor
    Meikyo
    Product
    Watch Boot L-zero Rpc-m4ls Firmware
    Vendor
    Meikyo
    Product
    Watch Boot Light Rpc-m5c
    Vendor
    Meikyo
    Product
    Watch Boot Light Rpc-m5c Firmware
    Vendor
    Meikyo
    Product
    Watch Boot Light Rpc-m5cs
    Vendor
    Meikyo
    Product
    Watch Boot Light Rpc-m5cs Firmware
    Vendor
    Meikyo
    Product
    Watch Boot Mini Rpc-m4h
    Vendor
    Meikyo
    Product
    Watch Boot Mini Rpc-m4h Firmware
    Vendor
    Meikyo
    Product
    Watch Boot Nino Rpc-m2c
    Vendor
    Meikyo
    Product
    Watch Boot Nino Rpc-m2c Firmware
    Vendor
    Meikyo
    Product
    Watch Boot Nino Rpc-m2cs
    Vendor
    Meikyo
    Product
    Watch Boot Nino Rpc-m2cs Firmware

    Exploits

    No exploit reference

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High