Access Control Vulnerability in SICAM P850 and P855 Products by Siemens
CVE-2022-29879
6.5MEDIUM
Summary
A vulnerability exists in the web-based management interface of Siemens SICAM P850 and P855 products. This issue arises from the lack of special access protection for certain internal developer views, allowing authenticated users to gain unauthorized access to sensitive device information. Affected versions prior to V3.00 are particularly at risk, prompting urgent attention from users to secure their devices and update to mitigating versions.
Affected Version(s)
SICAM P850 All versions < V3.00
SICAM P850 All versions < V3.00
SICAM P850 All versions < V3.00
References
CVSS V3.1
Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved