CVE-2022-32747

A CWE-290: Authentication Bypass by Spoofing vulnerability exists that could cause legitimate users to be locked out of devices or facilitate backdoor account creation by spoofing a device on the local network. Affected Products: EcoStruxureâ„¢ Cybersecurity Admin Expert (CAE) (Versions prior to 2.2)
Configurations

Configuration 1 (hide)

cpe:2.3:a:schneider-electric:ecostruxure_cybersecurity_admin_expert:*:*:*:*:*:*:*:*

History

03 Apr 2023, 17:44

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 7.1
v2 : unknown
v3 : 8.1

Information

Published : 2023-01-30 23:15

Updated : 2023-04-03 17:44


NVD link : CVE-2022-32747

Mitre link : CVE-2022-32747


JSON object : View

Products Affected

schneider-electric

  • ecostruxure_cybersecurity_admin_expert
CWE
CWE-290

Authentication Bypass by Spoofing