← العودة للجدول
CVE-2022-42970
CVE-2022-42970 — A CWE-306: Missing Authentication for Critical Function The software does not pe
📅 2023-02-01
🔴 Critical 🔥 No NVD Exploit Microsoft CVSS 9.8 🎯 EPSS 0.66%

📋 الوصف الكامل

A CWE-306: Missing Authentication for Critical Function The software does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources. Affected Products: APC Easy UPS Online Monitoring Software (Windows 7, 10, 11 & Windows Server 2016, 2019, 2022 - Versions prior to V2.5-GA), APC Easy UPS Online Monitoring Software (Wind

💻 الأنظمة المتأثرة

Windows Server | Microsoft Windows

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2022-42970

📡 المصدر

NVD

✅ الحلول والتخفيف

Update to v2.5

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←