CVE Feed

    Dashboard / CVE / CVE-2022-42785

    CVE-2022-42785

    Multiple W&T products of the ComServer Series are prone to an authentication bypass. An unathenticated remote attacker, can log in without knowledge of the password by crafting a modified HTTP GET Request.

    Published:Nov 10, 2022
    Last Modified:May 1, 2025
    EPS:Nov 10, 2022
    EPSS Score:0.00544
    CVSS Score:9.8

    Affected Products

    Vendor
    Wut
    Product
    At-modem-emulator
    Vendor
    Wut
    Product
    At-modem-emulator Firmware
    Vendor
    Wut
    Product
    Com-server 20ma
    Vendor
    Wut
    Product
    Com-server 20ma Firmware
    Vendor
    Wut
    Product
    Com-server \+\+
    Vendor
    Wut
    Product
    Com-server \+\+ Firmware
    Vendor
    Wut
    Product
    Com-server Highspeed 100basefx
    Vendor
    Wut
    Product
    Com-server Highspeed 100basefx Firmware
    Vendor
    Wut
    Product
    Com-server Highspeed 100baselx
    Vendor
    Wut
    Product
    Com-server Highspeed 100baselx Firmware
    Vendor
    Wut
    Product
    Com-server Highspeed 19\" 1port
    Vendor
    Wut
    Product
    Com-server Highspeed 19\" 1port Firmware
    Vendor
    Wut
    Product
    Com-server Highspeed 19\" 4port
    Vendor
    Wut
    Product
    Com-server Highspeed 19\" 4port Firmware
    Vendor
    Wut
    Product
    Com-server Highspeed Compact
    Vendor
    Wut
    Product
    Com-server Highspeed Compact Firmware
    Vendor
    Wut
    Product
    Com-server Highspeed Industry
    Vendor
    Wut
    Product
    Com-server Highspeed Industry Firmware
    Vendor
    Wut
    Product
    Com-server Highspeed Isolated
    Vendor
    Wut
    Product
    Com-server Highspeed Isolated Firmware
    Vendor
    Wut
    Product
    Com-server Highspeed Lc
    Vendor
    Wut
    Product
    Com-server Highspeed Lc Firmware
    Vendor
    Wut
    Product
    Com-server Highspeed Oem
    Vendor
    Wut
    Product
    Com-server Highspeed Oem Firmware
    Vendor
    Wut
    Product
    Com-server Highspeed Office 1port
    Vendor
    Wut
    Product
    Com-server Highspeed Office 1port Firmware
    Vendor
    Wut
    Product
    Com-server Highspeed Office 4port
    Vendor
    Wut
    Product
    Com-server Highspeed Office 4port Firmware
    Vendor
    Wut
    Product
    Com-server Highspeed Poe
    Vendor
    Wut
    Product
    Com-server Highspeed Poe 3x Isolated
    Vendor
    Wut
    Product
    Com-server Highspeed Poe 3x Isolated Firmware
    Vendor
    Wut
    Product
    Com-server Highspeed Poe Firmware
    Vendor
    Wut
    Product
    Com-server Highspeed Ul
    Vendor
    Wut
    Product
    Com-server Highspeed Ul Firmware

    Exploits

    No exploit reference

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High