Security Advisory

CVE-2022-30310

9.8
CRITICAL

Vulnerability Description

In Festo Controller CECC-X-M1 product family in multiple versions, the http-endpoint "cecc-x-acknerr-request" POST request doesn’t check for port syntax. This can result in unauthorized execution of system commands with root privileges due to improper access control command injection.
Published Date June 13, 2022
Official Source NIST NVD Advisory