CVE-2022-3186
Estado: ModificadaAlta (7.5)—
Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where the affected product allows an attacker to access the device’s main management page from the cloud. This feature enables users to remotely connect devices, however, the current implementation permits users to access other device's information.
CVSS
- Versión: 3.1
- Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
- Puntuación base: 7.5
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 0.59%
- Percentil entre todas las CVEs puntuadas: 46
- Fecha de la puntuación: 6/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (12)
Dataprobe — Iboot-pdu4-n20 FirmwareDataprobe — Iboot-pdu4a-n15 FirmwareDataprobe — Iboot-pdu4a-n20 FirmwareDataprobe — Iboot-pdu4sa-n15 FirmwareDataprobe — Iboot-pdu4sa-n20 FirmwareDataprobe — Iboot-pdu8a-2n15 FirmwareDataprobe — Iboot-pdu8a-2n20 FirmwareDataprobe — Iboot-pdu8a-n15 FirmwareDataprobe — Iboot-pdu8a-n20 FirmwareDataprobe — Iboot-pdu8sa-2n15 FirmwareDataprobe — Iboot-pdu8sa-n15 FirmwareDataprobe — Iboot-pdu8sa-n20 Firmware
CWE
- CWE-284
- NVD-CWE-Other
Referencias
JSON original (NVD)
Mostrar
{
"id": "CVE-2022-3186",
"cveTags": [],
"metrics": {
"ssvcV203": [
{
"source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
"ssvcData": {
"id": "CVE-2022-3186",
"role": "CISA Coordinator",
"options": [
{
"exploitation": "none"
},
{
"automatable": "yes"
},
{
"technicalImpact": "partial"
}
],
"version": "2.0.3",
"timestamp": "2025-04-15T19:33:52.543093Z"
}
}
],
"cvssMetricV31": [
{
"type": "Secondary",
"source": "ics-cert@hq.dhs.gov",
"cvssData": {
"scope": "CHANGED",
"version": "3.1",
"baseScore": 8.6,
"attackVector": "NETWORK",
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N",
"integrityImpact": "NONE",
"userInteraction": "NONE",
"attackComplexity": "LOW",
"availabilityImpact": "NONE",
"privilegesRequired": "NONE",
"confidentialityImpact": "HIGH"
},
"impactScore": 4,
"exploitabilityScore": 3.9
},
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.1",
"baseScore": 7.5,
"attackVector": "NETWORK",
"baseSeverity": "HIGH",
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N",
"integrityImpact": "NONE",
"userInteraction": "NONE",
"attackComplexity": "LOW",
"availabilityImpact": "NONE",
"privilegesRequired": "NONE",
"confidentialityImpact": "HIGH"
},
"impactScore": 3.6,
"exploitabilityScore": 3.9
}
]
},
"affected": [
{
"source": "ics-cert@hq.dhs.gov",
"affectedData": [
{
"vendor": "Dataprobe",
"product": "iBoot-PDU FW",
"versions": [
{
"status": "affected",
"version": "0",
"versionType": "custom",
"lessThanOrEqual": "1.42.06162022"
}
],
"defaultStatus": "unaffected"
}
]
}
],
"published": "2022-12-21T23:15:09.697",
"references": [
{
"url": "https://www.cisa.gov/uscert/ics/advisories/icsa-22-263-03",
"tags": [
"Patch",
"Third Party Advisory",
"US Government Resource"
],
"source": "ics-cert@hq.dhs.gov"
},
{
"url": "https://www.cisa.gov/uscert/ics/advisories/icsa-22-263-03",
"tags": [
"Patch",
"Third Party Advisory",
"US Government Resource"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Secondary",
"source": "ics-cert@hq.dhs.gov",
"description": [
{
"lang": "en",
"value": "CWE-284"
}
]
},
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "Dataprobe iBoot-PDU FW versions prior to 1.42.06162022 contain a vulnerability where the affected product allows an attacker to access the device’s main management page from the cloud. This feature enables users to remotely connect devices, however, the current implementation permits users to access other device's information.\n\n"
},
{
"lang": "es",
"value": "Las versiones de firmware de Dataprobe iBoot-PDU anteriores a la 1.42.06162022 contienen una vulnerabilidad en la que el producto afectado permite a un atacante acceder a la página de administración principal del dispositivo desde la nube. Esta característica permite a los usuarios conectar dispositivos de forma remota; sin embargo, la implementación actual permite a los usuarios acceder a la información de otros dispositivos."
}
],
"lastModified": "2026-06-17T04:59:01.637",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:dataprobe:iboot-pdu4-n20_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "05060302-F6DE-4EAF-9356-8CD785ABDE7D",
"versionEndExcluding": "1.42.06162022"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:dataprobe:iboot-pdu4-n20:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "936B8451-A674-49D7-91EC-A03599A6D6AE"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:dataprobe:iboot-pdu4sa-n15_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "6D2071B9-BF2C-4A12-BA35-32BB59E210DB",
"versionEndExcluding": "1.42.06162022"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:dataprobe:iboot-pdu4sa-n15:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "1469E464-6784-4B0B-9895-79BA5A1A1CB8"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:dataprobe:iboot-pdu4a-n15_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "166422E2-0734-4F7E-B2FE-0EB461AFDD32",
"versionEndExcluding": "1.42.06162022"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:dataprobe:iboot-pdu4a-n15:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "82C1859A-0D39-4D69-B89F-E6AB92D71A38"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:dataprobe:iboot-pdu4sa-n20_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "80159239-E373-4399-AF14-5FC3B1F7BFBF",
"versionEndExcluding": "1.42.06162022"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:dataprobe:iboot-pdu4sa-n20:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "A017B904-A3C4-4070-96F7-9679FD2383C9"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:dataprobe:iboot-pdu4a-n20_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "7FCCC5B8-ED6E-4FCA-BA07-4D2AA1D26F50",
"versionEndExcluding": "1.42.06162022"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:dataprobe:iboot-pdu4a-n20:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "23BC31CA-2061-4141-8600-EF4A9AE7DD2A"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:dataprobe:iboot-pdu8sa-n15_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "D43D904E-6B72-44B4-A158-D6A7C30504A3",
"versionEndExcluding": "1.42.06162022"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:dataprobe:iboot-pdu8sa-n15:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "E1A43409-AF18-4BD5-A0D4-D27CDD6ABBE6"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:dataprobe:iboot-pdu8a-n15_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "AB35A114-99E7-44C6-B53B-B293AA9D9815",
"versionEndExcluding": "1.42.06162022"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:dataprobe:iboot-pdu8a-n15:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "56E2CAAD-8A4D-4F1A-AEF0-034C02965935"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:dataprobe:iboot-pdu8sa-2n15_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "C37DFE8A-F733-48D3-8BF6-ECC98A476C54",
"versionEndExcluding": "1.42.06162022"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:dataprobe:iboot-pdu8sa-2n15:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "ACA11FBB-1B4C-4F66-89EF-2D91C0161C4C"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:dataprobe:iboot-pdu8a-2n15_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "DAD2CA81-44E6-4499-9F5C-502F060A3B8F",
"versionEndExcluding": "1.42.06162022"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:dataprobe:iboot-pdu8a-2n15:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "58CE9F4A-74BD-4AFC-B019-5D750E2D1E16"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:dataprobe:iboot-pdu8sa-n20_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "6E012434-72F0-4BD6-ACA4-DF7E12FB9033",
"versionEndExcluding": "1.42.06162022"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:dataprobe:iboot-pdu8sa-n20:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "B64FEC33-D6D9-4F4C-BE43-31D637E6B01F"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:dataprobe:iboot-pdu8a-n20_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "F08FCBA2-94B8-44F9-921F-0CDD03D7903A",
"versionEndExcluding": "1.42.06162022"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:dataprobe:iboot-pdu8a-n20:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "2B1D3E7F-9C2F-48F8-BF49-539570A0986A"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:dataprobe:iboot-pdu8a-2n20_firmware:*:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "3577400F-ADC8-4EBF-AFEE-DE165391BE12",
"versionEndExcluding": "1.42.06162022"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:dataprobe:iboot-pdu8a-2n20:-:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "0DFC4885-AF94-471E-AE4E-DD26A6A91667"
}
],
"operator": "OR"
}
],
"operator": "AND"
}
],
"sourceIdentifier": "ics-cert@hq.dhs.gov"
}