CVE-2022-36601 describes a critical vulnerability in the Eclipse TCF debug interface of JasMiner-X4-Server firmware versions 20220621-090907 and below. This flaw allows unauthenticated attackers to gain root privileges and execute arbitrary commands due to the interface being openly exposed on port 1534. With a CVSS score of 9.8 (Critical), the vulnerability presents a severe risk of complete compromise (confidentiality, integrity, and availability) without requiring user interaction or prior authentication. Currently, there is no public exploit code available, nor is there evidence of active exploitation or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 20220621-090907CPE matchmatch criteria | cpe:2.3:o:jinglemining:jasminer_x4_server_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.