CVE-2022-40981EPSS p39.0%

CVE-2022-40981CVE-2022-40981

etictelecom / remote_access_server_firmware

Description

All versions of ETIC Telecom Remote Access Server (RAS) 4.5.0 and prior is vulnerable to malicious file upload. An attacker could take advantage of this to store malicious files on the server, which could override sensitive and useful existing files on the filesystem, fill the hard disk to full capacity, or compromise the affected device or computers with administrator level privileges connected to the affected device.

Scoring

CVSS 5.9 ()
VectorCVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:L
EPSS0.50% probability of exploitation · percentile 39.0% · 2026-06-19T12:03:05Z
Last modified2026-06-17
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.