CVE-2022-34464
12.07.2022, 10:15
A vulnerability has been identified in SICAM GridEdge Essential ARM (All versions), SICAM GridEdge Essential Intel (All versions < V2.7.3), SICAM GridEdge Essential with GDS ARM (All versions), SICAM GridEdge Essential with GDS Intel (All versions < V2.7.3). Affected software uses an improperly protected file to import SSH keys. Attackers with access to the filesystem of the host on which SICAM GridEdge runs, are able to inject a custom SSH key to that file.Enginsight
Vendor | Product | Version |
---|---|---|
siemens | sicam_gridedge_essential_arm | - |
siemens | sicam_gridedge_essential_gds_arm | - |
siemens | sicam_gridedge_essential_gds_intel | 𝑥 < 2.7.3 |
siemens | sicam_gridedge_essential_intel | 𝑥 < 2.7.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration