CVE-2022-29882

A vulnerability has been identified in SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P850 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00), SICAM P855 (All versions < V3.00). Affected devices do not handle uploaded files correctly. An unauthenticated attacker could take advantage of this situation to store an XSS attack, which could - when a legitimate user accesses the error logs - perform arbitrary actions in the name of the user.
Cross-site Scripting
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.1 MEDIUM
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
siemensCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 75%
VendorProductVersion
siemens7kg8500-0aa00-0aa0_firmware
𝑥
< 3.00
siemens7kg8500-0aa00-2aa0_firmware
𝑥
< 3.00
siemens7kg8500-0aa10-0aa0_firmware
𝑥
< 3.00
siemens7kg8500-0aa10-2aa0_firmware
𝑥
< 3.00
siemens7kg8500-0aa30-0aa0_firmware
𝑥
< 3.00
siemens7kg8500-0aa30-2aa0_firmware
𝑥
< 3.00
siemens7kg8501-0aa01-0aa0_firmware
𝑥
< 3.00
siemens7kg8501-0aa01-2aa0_firmware
𝑥
< 3.00
siemens7kg8501-0aa02-0aa0_firmware
𝑥
< 3.00
siemens7kg8501-0aa02-2aa0_firmware
𝑥
< 3.00
siemens7kg8501-0aa11-0aa0_firmware
𝑥
< 3.00
siemens7kg8501-0aa11-2aa0_firmware
𝑥
< 3.00
siemens7kg8501-0aa12-0aa0_firmware
𝑥
< 3.00
siemens7kg8501-0aa12-2aa0_firmware
𝑥
< 3.00
siemens7kg8501-0aa31-0aa0_firmware
𝑥
< 3.00
siemens7kg8501-0aa31-2aa0_firmware
𝑥
< 3.00
siemens7kg8501-0aa32-0aa0_firmware
𝑥
< 3.00
siemens7kg8501-0aa32-2aa0_firmware
𝑥
< 3.00
siemens7kg8550-0aa00-0aa0_firmware
𝑥
< 3.00
siemens7kg8550-0aa00-2aa0_firmware
𝑥
< 3.00
siemens7kg8550-0aa10-0aa0_firmware
𝑥
< 3.00
siemens7kg8550-0aa10-2aa0_firmware
𝑥
< 3.00
siemens7kg8550-0aa30-0aa0_firmware
𝑥
< 3.00
siemens7kg8550-0aa30-2aa0_firmware
𝑥
< 3.00
siemens7kg8551-0aa01-0aa0_firmware
𝑥
< 3.00
siemens7kg8551-0aa01-2aa0_firmware
𝑥
< 3.00
siemens7kg8551-0aa02-0aa0_firmware
𝑥
< 3.00
siemens7kg8551-0aa02-2aa0_firmware
𝑥
< 3.00
siemens7kg8551-0aa11-0aa0_firmware
𝑥
< 3.00
siemens7kg8551-0aa11-2aa0_firmware
𝑥
< 3.00
siemens7kg8551-0aa12-0aa0_firmware
𝑥
< 3.00
siemens7kg8551-0aa12-2aa0_firmware
𝑥
< 3.00
siemens7kg8551-0aa31-0aa0_firmware
𝑥
< 3.00
siemens7kg8551-0aa31-2aa0_firmware
𝑥
< 3.00
siemens7kg8551-0aa32-0aa0_firmware
𝑥
< 3.00
siemens7kg8551-0aa32-2aa0_firmware
𝑥
< 3.00
𝑥
= Vulnerable software versions