Access Control Vulnerability in SICAM P850 and P855 Products by Siemens
CVE-2022-29879

5.3MEDIUM

Key Information:

Vendor

Siemens

Status
Vendor
CVE Published:
10 May 2022

What is CVE-2022-29879?

A vulnerability exists in the web-based management interface of Siemens SICAM P850 and P855 products. This issue arises from the lack of special access protection for certain internal developer views, allowing authenticated users to gain unauthorized access to sensitive device information. Affected versions prior to V3.00 are particularly at risk, prompting urgent attention from users to secure their devices and update to mitigating versions.

Affected Version(s)

SICAM T 0

References

CVSS V4

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.