Password Disclosure Vulnerability in SICAM GridEdge Essential Solutions by Siemens
CVE-2022-30231

6.9MEDIUM

Key Information:

Vendor

Siemens

Vendor
CVE Published:
14 June 2022

What is CVE-2022-30231?

A vulnerability exists in various versions of the SICAM GridEdge Essential software solutions that allows authenticated users to request and retrieve password hashes of other users. This security flaw can lead to unauthorized access if exploited, as it enables a user to obtain sensitive password information from the system.

Affected Version(s)

SICAM GridEdge (Classic) 0

References

CVSS V4

Score:
6.9
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.