CVE-2022-34660

A vulnerability has been identified in Teamcenter V12.4 (All versions < V12.4.0.15), Teamcenter V13.0 (All versions < V13.0.0.10), Teamcenter V13.1 (All versions < V13.1.0.10), Teamcenter V13.2 (All versions < V13.2.0.9), Teamcenter V13.3 (All versions < V13.3.0.5), Teamcenter V14.0 (All versions < V14.0.0.2). File Server Cache service in Teamcenter consist of a functionality that is vulnerable to command injection. This could potentially allow an attacker to perform remote code execution.
Command Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
siemensCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 83%
VendorProductVersion
siemensteamcenter
12.4 ≤
𝑥
< 12.4.0.15
siemensteamcenter
13.0 ≤
𝑥
< 13.0.0.10
siemensteamcenter
13.1 ≤
𝑥
< 13.1.0.10
siemensteamcenter
13.2 ≤
𝑥
< 13.2.0.9
siemensteamcenter
13.3 ≤
𝑥
< 13.3.0.5
siemensteamcenter
14.0 ≤
𝑥
< 14.0.0.2
𝑥
= Vulnerable software versions