Buffer Read Vulnerability in Siemens Devices Due to TFTP Misconfiguration
CVE-2022-46143

5.1MEDIUM

What is CVE-2022-46143?

The vulnerability arises from Siemens devices failing to correctly validate the TFTP blocksize. An authenticated attacker can exploit this oversight to read from an uninitialized buffer, potentially exposing previously allocated data. This presents a significant security concern as it could lead to unauthorized access to sensitive information stored in the affected devices.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

RUGGEDCOM RM1224 LTE(4G) EU 0

RUGGEDCOM RM1224 LTE(4G) EU 0

RUGGEDCOM RM1224 LTE(4G) NAM 0

References

CVSS V4

Score:
5.1
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.