CVE-2022-0715

high-risk
Published 2022-03-09

A CWE-287: Improper Authentication vulnerability exists that could cause an attacker to arbitrarily change the behavior of the UPS when a key is leaked and used to upload malicious firmware. Affected Product: APC Smart-UPS Family: SMT Series (SMT Series ID=18: UPS 09.8 and prior / SMT Series ID=1040: UPS 01.2 and prior / SMT Series ID=1031: UPS 03.1 and prior), SMC Series (SMC Series ID=1005: UPS 14.1 and prior / SMC Series ID=1007: UPS 11.0 and prior / SMC Series ID=1041: UPS 01.1 and prior), SCL Series (SCL Series ID=1030: UPS 02.5 and prior / SCL Series ID=1036: UPS 02.5 and prior), SMX Series (SMX Series ID=20: UPS 10.2 and prior / SMX Series ID=23: UPS 07.0 and prior), SRT Series (SRT Series ID=1010/1019/1025: UPS 08.3 and prior / SRT Series ID=1024: UPS 01.0 and prior / SRT Series ID=1020: UPS 10.4 and prior / SRT Series ID=1021: UPS 12.2 and prior / SRT Series ID=1001/1013: UPS 05.1 and prior / SRT Series ID=1002/1014: UPSa05.2 and prior), APC SmartConnect Family: SMT Series (SMT Series ID=1015: UPS 04.5 and prior), SMC Series (SMC Series ID=1018: UPS 04.2 and prior), SMTL Series (SMTL Series ID=1026: UPS 02.9 and prior), SCL Series (SCL Series ID=1029: UPS 02.5 and prior / SCL Series ID=1030: UPS 02.5 and prior / SCL Series ID=1036: UPS 02.5 and prior / SCL Series ID=1037: UPS 03.1 and prior), SMX Series (SMX Series ID=1031: UPS 03.1 and prior)

Do I need to act?

~
1.1% chance of exploitation in next 30 days
EPSS score — moderate exploit probability
-
Not on CISA KEV list
No confirmed active exploitation reported to CISA
?
Patch status unknown
Check vendor advisories for fix availability and mitigation guidance
9
CVSS 9.1/10 Critical
NETWORK / LOW complexity

Affected Products (20)

Smt Series 1015 Ups Firmware
Smc Series 1018 Ups Firmware
Smtl Series 1026 Ups Firmware
Scl Series 1029 Ups Firmware
Scl Series 1030 Ups Firmware
Scl Series 1036 Ups Firmware
Scl Series 1037 Ups Firmware
Smx Series 1031 Ups Firmware
Smt Series 18 Ups Firmware
Smt Series 1040 Ups Firmware
Smt Series 1031 Ups Firmware
Smc Series 1005 Ups Firmware
Smc Series 1007 Ups Firmware
Smc Series 1041 Ups Firmware
Smx Series 20 Ups Firmware
Smx Series 23 Ups Firmware
Srt Series 1010 Ups Firmware
Srt Series 1019 Ups Firmware
Srt Series 1025 Ups Firmware
Srt Series 1020 Ups Firmware

Affected Vendors

57
/ 100
high-risk
Severity 31/34 · Critical
Exploitability 3/34 · Minimal
Exposure 23/34 · High