Code Injection Vulnerability in Siemens Products
CVE-2022-36323
Key Information:
- Vendor
Siemens
- Status
- Vendor
- CVE Published:
- 10 August 2022
What is CVE-2022-36323?
This vulnerability arises from improper input sanitization within certain Siemens products, which can be exploited by an authenticated attacker with administrative access. By manipulating input fields, the attacker can execute arbitrary code or obtain a system root shell, potentially compromising system integrity and security. Organizations using these devices should assess their exposure and implement mitigation strategies to safeguard against potential exploitation.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
RUGGEDCOM RM1224 LTE(4G) EU All versions < V7.1.2
RUGGEDCOM RM1224 LTE(4G) NAM All versions < V7.1.2
SCALANCE M804PB All versions < V7.1.2
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved