Generex UPS CS141 below 2.06 version, could allow a remote attacker to upload a backup file containing a modified "users.json" to the web server of the device, allowing him to replace the administrator password.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
EUVD-2022-49967 | Generex UPS CS141 below 2.06 version, could allow a remote attacker to upload a backup file containing a modified "users.json" to the web server of the device, allowing him to replace the administrator password. |
Fixes
Solution
This vulnerability has been fixed by Generex team in CS141 version 2.12, released on December 2022.
Workaround
No workaround given by the vendor.
References
History
Tue, 11 Feb 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2025-02-11T19:02:51.017Z
Reserved: 2022-12-12T00:00:00.000Z
Link: CVE-2022-47192

Updated: 2024-08-03T14:47:29.346Z

Status : Modified
Published: 2023-03-31T22:15:07.457
Modified: 2024-11-21T07:31:40.950
Link: CVE-2022-47192

No data.

No data.