Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-22732


A CWE-668: Exposure of Resource to Wrong Sphere vulnerability exists that could cause all remote domains to access the resources (data) supplied by the server when an attacker sends a fetch request from third-party site or malicious site. Affected Products: EcoStruxure Power Commission (Versions prior to V2.22)


Published

2023-01-30T23:15:09.753

Last Modified

2024-11-21T06:47:20.603

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 3.9 (LOW)

Weaknesses
  • Type: Secondary
    CWE-668

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application schneider-electric ecostruxure_power_commission < 2.22 Yes

References