Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-32747


A CWE-290: Authentication Bypass by Spoofing vulnerability exists that could cause legitimate users to be locked out of devices or facilitate backdoor account creation by spoofing a device on the local network. Affected Products: EcoStruxureâ„¢ Cybersecurity Admin Expert (CAE) (Versions prior to 2.2)


Published

2023-01-30T23:15:11.227

Last Modified

2024-11-21T07:06:52.950

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 8.0 (HIGH)

Weaknesses
  • Type: Primary
    CWE-290

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application schneider-electric ecostruxure_cybersecurity_admin_expert < 2.4 Yes

References