CVE-2022-22813
—CVSS 3.1
9.8 critical
EPSS
1%p63
Published
()
Modified
Description
A CWE-798: Use of Hard-coded Credentials vulnerability exists. If an attacker were to obtain the TLS cryptographic key and take active control of the Courier tunneling communication network, they could potentially observe and manipulate traffic associated with product configuration.
- Vendors
- schneider-electric
- Products
- easergy p141 firmware, easergy p142 firmware, easergy p143 firmware, easergy p145 firmware, easergy p241 firmware, easergy p242 firmware, easergy p243 firmware, easergy p342 firmware, easergy p343 firmware, easergy p344 firmware, easergy p345 firmware, easergy p441 firmware
- Weakness
- CWE-798
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.