CVE-2022-31491

Voltronic Power ViewPower through 1.04-24215, ViewPower Pro through 2.0-22165, and PowerShield Netguard before 1.04-23292 allows a remote attacker to run arbitrary code via an unspecified web interface related to detection of a managed UPS shutting down. An unauthenticated attacker can use this to run arbitrary code immediately regardless of any managed UPS state or presence.
Configurations

No configuration.

History

No history.

Information

Published : 2025-08-22 20:15

Updated : 2025-08-25 20:24


NVD link : CVE-2022-31491

Mitre link : CVE-2022-31491

CVE.ORG link : CVE-2022-31491


JSON object : View

Products Affected

No product.

CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')

CWE-749

Exposed Dangerous Method or Function