
>You successfully exploited: CVE-2022-4636 this vulnerability……… https://t.co/X01YF4v5Zb
Post summary
The tweet claims that CVE-2022-4636 has been successfully exploited in the wild, but provides no supporting details or evidence.
Exploitation ongoing with high activity in latest observed window (1 mentions)
Recommended action window: Immediate (within 24h)
NVD description
Black Box KVM Firmware version 3.4.31307 on models ACR1000A-R-R2, ACR1000A-T-R2, ACR1002A-T, ACR1002A-R, and ACR1020A-T is vulnerable to path traversal, which may allow an attacker to steal user credentials and other sensitive information through local file inclusion.
Priority
MEDIUM
Exploitation
ACTIVE
PoC
NONE
Patch
AVAILABLE
Momentum
NONE
If you run products in this scope, you should treat this CVE as relevant to your environment.
2 versions affected across 10 products

>You successfully exploited: CVE-2022-4636 this vulnerability……… https://t.co/X01YF4v5Zb
Post summary
The tweet claims that CVE-2022-4636 has been successfully exploited in the wild, but provides no supporting details or evidence.
10 of 10 entries
| Part | Vendor | Product | Version | Target SW | Target HW |
|---|---|---|---|---|---|
| HW | blackbox | acr1000a-r-r2 | - | - | - |
| OS | blackbox | acr1000a-r-r2_firmware | 3.4.31307 | - | - |
| HW | blackbox | acr1000a-t-r2 | - | - | - |
| OS | blackbox | acr1000a-t-r2_firmware | 3.4.31307 | - | - |
| HW | blackbox | acr1002a-r | - | - | - |
| OS | blackbox | acr1002a-r_firmware | 3.4.31307 | - | - |
| HW | blackbox | acr1002a-t | - | - | - |
| OS | blackbox | acr1002a-t_firmware | 3.4.31307 | - | - |
| HW | blackbox | acr1020a-t | - | - | - |
| OS | blackbox | acr1020a-t_firmware | 3.4.31307 | - | - |