Critical severity9.8NVD Advisory· Published Feb 6, 2023· Updated Jun 17, 2026
CVE-2022-3229
CVE-2022-3229
Description
Because the web management interface for Unified Intents' Unified Remote solution does not itself require authentication, a remote, unauthenticated attacker can change or disable authentication requirements for the Unified Remote protocol, and leverage this now-unauthenticated access to run code of the attacker's choosing.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:unifiedremote:unified_remote:*:*:*:*:*:*:*:*Range: <=3.11.0.2483
(expand)+ 1 more
- (no CPE)
- (no CPE)range: 0
Patches
Vulnerability mechanics
References
1- github.com/rapid7/metasploit-framework/pull/16989nvdExploitIssue TrackingPatch
News mentions
0No linked articles in our index yet.