Siemens
Siemens 7kg8500-0aa10-0aa0 Firmware: vulnerabilidades y CVE
Siemens 7kg8500-0aa10-0aa0 Firmware tiene 13 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE13
Últimos 12 meses0
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2022-41665 | Alta (8.8) | 1.1% | — | 11 oct 2022 | A vulnerability has been identified in SICAM P850 (7KG8500-0AA00-0AA0) (All versions < V3.10), SICAM P850 (7KG8500-0AA00-2AA0) (All versions < V3.10), SICAM P850 (7KG8500-0AA10-0AA0) (All versions < V3.10), SICAM P850… |
| CVE-2022-40226 | Alta (8.1) | 0.70% | — | 11 oct 2022 | A vulnerability has been identified in SICAM P850 (7KG8500-0AA00-0AA0) (All versions < V3.10), SICAM P850 (7KG8500-0AA00-2AA0) (All versions < V3.10), SICAM P850 (7KG8500-0AA10-0AA0) (All versions < V3.10), SICAM P850… |
| CVE-2022-29883 | Media (6.9) | 1.0% | — | 20 may 2022 | A vulnerability has been identified in SICAM T (All versions < V3.0). Affected devices do not restrict unauthenticated access to certain pages of the web interface. This could allow an attacker to delete log files… |
| CVE-2022-29882 | Media (6.1) | 0.86% | — | 20 may 2022 | A vulnerability has been identified in SICAM T (All versions < V3.0). Affected devices do not handle uploaded files correctly. An unauthenticated attacker could take advantage of this situation to store an XSS attack,… |
| CVE-2022-29881 | Media (6.9) | 1.1% | — | 20 may 2022 | A vulnerability has been identified in SICAM T (All versions < V3.0). The web based management interface of affected devices does not employ special access protection for certain internal developer views. This could… |
| CVE-2022-29880 | Media (5.4) | 0.64% | — | 20 may 2022 | A vulnerability has been identified in SICAM T (All versions < V3.0). Affected devices do not properly validate input in the configuration interface. This could allow an authenticated attacker to place persistent XSS… |
| CVE-2022-29879 | Media (5.3) | 0.86% | — | 20 may 2022 | A vulnerability has been identified in SICAM T (All versions < V3.0). The web based management interface of affected devices does not employ special access protection for certain internal developer views. This could… |
| CVE-2022-29878 | Alta (8.1) | 1.1% | — | 20 may 2022 | A vulnerability has been identified in SICAM T (All versions < V3.0). Affected devices use a limited range for challenges that are sent during the unencrypted challenge-response communication. An unauthenticated… |
| CVE-2022-29877 | Media (6.5) | 0.66% | — | 20 may 2022 | A vulnerability has been identified in SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM… |
| CVE-2022-29876 | Media (6.1) | 0.86% | — | 20 may 2022 | A vulnerability has been identified in SICAM T (All versions < V3.0). Affected devices do not properly handle the input of a GET request parameter. The provided argument is directly reflected in the web server response.… |
| CVE-2022-29874 | Alta (7.5) | 0.75% | — | 20 may 2022 | A vulnerability has been identified in SICAM T (All versions < V3.0). Affected devices do not encrypt web traffic with clients but communicate in cleartext via HTTP. This could allow an unauthenticated attacker to… |
| CVE-2022-29873 | Crítica (9.3) | 2.0% | — | 20 may 2022 | A vulnerability has been identified in SICAM T (All versions < V3.0). Affected devices do not properly validate parameters of certain GET and POST requests. This could allow an unauthenticated attacker to set the device… |
| CVE-2022-29872 | Alta (8.7) | 1.5% | — | 20 may 2022 | A vulnerability has been identified in SICAM T (All versions < V3.0). Affected devices do not properly validate parameters of POST requests. This could allow an authenticated attacker to set the device to a denial of… |