CVE-2022-0183
Last modified
CVE-2022-0183 is a medium-severity vulnerability rated 4.6/10 on the CVSS scale. Missing encryption of sensitive data vulnerability in 'MIRUPASS' PW10 firmware all versions and 'MIRUPASS' PW20 firmware all versions allows an attacker who can physically access the device to obtain the stored passwords.. EPSS estimates a 0.11% chance of exploitation in the next 30 days.
Description
Missing encryption of sensitive data vulnerability in 'MIRUPASS' PW10 firmware all versions and 'MIRUPASS' PW20 firmware all versions allows an attacker who can physically access the device to obtain the stored passwords.
Metrics
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Kingjim | Mirupass Pw10 Firmware | All versions |
| Kingjim | Mirupass Pw20 Firmware | All versions |
References
- https://jvn.jp/en/jp/JVN19826500/index.htmlThird Party Advisory
- https://www.kingjim.co.jp/download/security/#mirupassVendor Advisory
- https://jvn.jp/en/jp/JVN19826500/index.htmlThird Party Advisory
- https://www.kingjim.co.jp/download/security/#mirupassVendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2022-0183?
How severe is CVE-2022-0183?
How do I fix CVE-2022-0183?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2022
- CVE-2022-0177Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. Reason: T…
- CVE-2022-0178Missing Authorization vulnerability in snipe snipe/snipe-it.…5.4
- CVE-2022-0179snipe-it is vulnerable to Missing Authorization5.4
- CVE-2022-0180Cross-site request forgery (CSRF) vulnerability in Quiz And …8.8
- CVE-2022-0181Reflected cross-site scripting vulnerability in Quiz And Sur…6.1
- CVE-2022-0182Stored cross-site scripting vulnerability in Quiz And Survey…5.4
- CVE-2022-0184Insufficiently protected credentials vulnerability in 'TEPRA…4.3
- CVE-2022-0185A heap-based buffer overflow flaw was found in the way the l…8.4
- CVE-2022-0186The Image Photo Gallery Final Tiles Grid WordPress plugin be…5.4
- CVE-2022-0188The CMP WordPress plugin before 4.0.19 allows any user, even…5.3
- CVE-2022-0189The WP RSS Aggregator WordPress plugin before 4.20 does not …6.1
- CVE-2022-0190The Ad Invalid Click Protector (AICP) WordPress plugin befor…8.8
Are you affected by CVE-2022-0183?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
