A CWE-290: Authentication Bypass by Spoofing vulnerability exists that could cause legitimate users to be locked out of devices or facilitate backdoor account creation by spoofing a device on the local network. Affected Products: EcoStruxureâ„¢ Cybersecurity Admin Expert (CAE) (Versions prior to 2.2)
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: schneider
Published: 2023-01-30T00:00:00
Updated: 2023-01-30T00:00:00
Reserved: 2022-06-09T00:00:00
Link: CVE-2022-32747
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-01-30T23:15:11.227
Modified: 2023-04-03T17:44:24.080
Link: CVE-2022-32747
JSON object: View
Redhat Information
No data.
CWE