Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-29876


A vulnerability has been identified in SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00). Affected devices do not properly handle the input of a GET request parameter. The provided argument is directly reflected in the web server response. This could allow an unauthenticated attacker to perform reflected XSS attacks.


Published

2022-05-20T13:15:16.083

Last Modified

2024-11-21T06:59:52.710

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.1 (MEDIUM)

CVSSv2 Vector

AV:N/AC:M/Au:N/C:N/I:P/A:N

  • Access Vector: NETWORK
  • Access Complexity: MEDIUM
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: PARTIAL
  • Availability Impact: NONE
Exploitability Score

8.6

Impact Score

2.9

Weaknesses
  • Type: Secondary
    CWE-79
  • Type: Primary
    CWE-79

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System siemens 7kg8500-0aa00-0aa0_firmware < 3.00 Yes
Hardware siemens 7kg8500-0aa00-0aa0 - No
Operating System siemens 7kg8500-0aa00-2aa0_firmware < 3.00 Yes
Hardware siemens 7kg8500-0aa00-2aa0 - No
Operating System siemens 7kg8500-0aa10-0aa0_firmware < 3.00 Yes
Hardware siemens 7kg8500-0aa10-0aa0 - No
Operating System siemens 7kg8500-0aa10-2aa0_firmware < 3.00 Yes
Hardware siemens 7kg8500-0aa10-2aa0 - No
Operating System siemens 7kg8500-0aa30-0aa0_firmware < 3.00 Yes
Hardware siemens 7kg8500-0aa30-0aa0 - No
Operating System siemens 7kg8500-0aa30-2aa0_firmware < 3.00 Yes
Hardware siemens 7kg8500-0aa30-2aa0 - No
Operating System siemens 7kg8501-0aa01-0aa0_firmware < 3.00 Yes
Hardware siemens 7kg8501-0aa01-0aa0 - No
Operating System siemens 7kg8501-0aa01-2aa0_firmware < 3.00 Yes
Hardware siemens 7kg8501-0aa01-2aa0 - No
Operating System siemens 7kg8501-0aa02-0aa0_firmware < 3.00 Yes
Hardware siemens 7kg8501-0aa02-0aa0 - No
Operating System siemens 7kg8501-0aa02-2aa0_firmware < 3.00 Yes
Hardware siemens 7kg8501-0aa02-2aa0 - No
Operating System siemens 7kg8501-0aa11-0aa0_firmware < 3.00 Yes
Hardware siemens 7kg8501-0aa11-0aa0 - No
Operating System siemens 7kg8501-0aa11-2aa0_firmware < 3.00 Yes
Hardware siemens 7kg8501-0aa11-2aa0 - No
Operating System siemens 7kg8501-0aa12-0aa0_firmware < 3.00 Yes
Hardware siemens 7kg8501-0aa12-0aa0 - No
Operating System siemens 7kg8501-0aa12-2aa0_firmware < 3.00 Yes
Hardware siemens 7kg8501-0aa12-2aa0 - No
Operating System siemens 7kg8501-0aa31-0aa0_firmware < 3.00 Yes
Hardware siemens 7kg8501-0aa31-0aa0 - No
Operating System siemens 7kg8501-0aa31-2aa0_firmware < 3.00 Yes
Hardware siemens 7kg8501-0aa31-2aa0 - No
Operating System siemens 7kg8501-0aa32-0aa0_firmware < 3.00 Yes
Hardware siemens 7kg8501-0aa32-0aa0 - No
Operating System siemens 7kg8501-0aa32-2aa0_firmware < 3.00 Yes
Hardware siemens 7kg8501-0aa32-2aa0 - No
Operating System siemens 7kg8550-0aa00-0aa0_firmware < 3.00 Yes
Hardware siemens 7kg8550-0aa00-0aa0 - No
Operating System siemens 7kg8550-0aa00-2aa0_firmware < 3.00 Yes
Hardware siemens 7kg8550-0aa00-2aa0 - No
Operating System siemens 7kg8550-0aa10-0aa0_firmware < 3.00 Yes
Hardware siemens 7kg8550-0aa10-0aa0 - No
Operating System siemens 7kg8550-0aa10-2aa0_firmware < 3.00 Yes
Hardware siemens 7kg8550-0aa10-2aa0 - No
Operating System siemens 7kg8550-0aa30-0aa0_firmware < 3.00 Yes
Hardware siemens 7kg8550-0aa30-0aa0 - No
Operating System siemens 7kg8550-0aa30-2aa0_firmware < 3.00 Yes
Hardware siemens 7kg8550-0aa30-2aa0 - No
Operating System siemens 7kg8551-0aa01-0aa0_firmware < 3.00 Yes
Hardware siemens 7kg8551-0aa01-0aa0 - No
Operating System siemens 7kg8551-0aa01-2aa0_firmware < 3.00 Yes
Hardware siemens 7kg8551-0aa01-2aa0 - No
Operating System siemens 7kg8551-0aa02-0aa0_firmware < 3.00 Yes
Hardware siemens 7kg8551-0aa02-0aa0 - No
Operating System siemens 7kg8551-0aa02-2aa0_firmware < 3.00 Yes
Hardware siemens 7kg8551-0aa02-2aa0 - No
Operating System siemens 7kg8551-0aa11-0aa0_firmware < 3.00 Yes
Hardware siemens 7kg8551-0aa11-0aa0 - No
Operating System siemens 7kg8551-0aa11-2aa0_firmware < 3.00 Yes
Hardware siemens 7kg8551-0aa11-2aa0 - No
Operating System siemens 7kg8551-0aa12-0aa0_firmware < 3.00 Yes
Hardware siemens 7kg8551-0aa12-0aa0 - No
Operating System siemens 7kg8551-0aa12-2aa0_firmware < 3.00 Yes
Hardware siemens 7kg8551-0aa12-2aa0 - No
Operating System siemens 7kg8551-0aa31-0aa0_firmware < 3.00 Yes
Hardware siemens 7kg8551-0aa31-0aa0 - No
Operating System siemens 7kg8551-0aa31-2aa0_firmware < 3.00 Yes
Hardware siemens 7kg8551-0aa31-2aa0 - No
Operating System siemens 7kg8551-0aa32-0aa0_firmware < 3.00 Yes
Hardware siemens 7kg8551-0aa32-0aa0 - No
Operating System siemens 7kg8551-0aa32-2aa0_firmware < 3.00 Yes
Hardware siemens 7kg8551-0aa32-2aa0 - No

References