ZeroHour

CVE-2022-29874

CVSS 3.1
8.8 high
EPSS
<1%p53
Published
()
Modified
Description

A vulnerability has been identified in SICAM T (All versions < V3.0). Affected devices do not encrypt web traffic with clients but communicate in cleartext via HTTP. This could allow an unauthenticated attacker to capture the traffic and interfere with the functionality of the device.

Vendors
siemens
Products
7kg8500-0aa00-0aa0 firmware, 7kg8500-0aa00-2aa0 firmware, 7kg8500-0aa10-0aa0 firmware, 7kg8500-0aa10-2aa0 firmware, 7kg8500-0aa30-0aa0 firmware, 7kg8500-0aa30-2aa0 firmware, 7kg8501-0aa01-0aa0 firmware, 7kg8501-0aa01-2aa0 firmware, 7kg8501-0aa02-0aa0 firmware, 7kg8501-0aa02-2aa0 firmware, 7kg8501-0aa11-0aa0 firmware, 7kg8501-0aa11-2aa0 firmware
Weakness
CWE-319
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.