CVE-2022-32528
30.01.2023, 23:15
A CWE-306: Missing Authentication for Critical Function vulnerability exists that could cause access to manipulate and read specific files in the IGSS project report directory, potentially leading to a denial-of-service condition when an attacker sends specific messages. Affected Products: IGSS Data Server - IGSSdataServer.exe (Versions prior to V15.0.0.22170)Enginsight
Vendor | Product | Version |
---|---|---|
schneider-electric | interactive_graphical_scada_system | 𝑥 ≤ 15.0.0.22170 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References