CVE-2022-30228
14.06.2022, 10:15
A vulnerability has been identified in SICAM GridEdge (Classic) (All versions < V2.6.6). The affected software does not apply cross-origin resource sharing (CORS) restrictions for critical operations. In case an attacker tricks a legitimate user into accessing a special resource a malicious request could be executed.Enginsight
| Vendor | Product | Version |
|---|---|---|
| siemens | sicam_gridedge_essential | 𝑥 < 2.6.6 |
| siemens | sicam_gridedge_essential | 𝑥 < 2.6.6 |
| siemens | sicam_gridedge_essential | 𝑥 < 2.6.6 |
| siemens | sicam_gridedge_essential | 𝑥 < 2.6.6 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration