8.8
CVSSv3

CVE-2022-26476

Published: 14/06/2022 Updated: 22/06/2022
CVSS v2 Base Score: 5.4 | Impact Score: 6.4 | Exploitability Score: 5.5
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 481
Vector: AV:A/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

A vulnerability has been identified in Spectrum Power 4 (All versions using Shared HIS), Spectrum Power 7 (All versions using Shared HIS), Spectrum Power MGMS (All versions using Shared HIS). An unauthenticated attacker could log into the component Shared HIS used in Spectrum Power systems by using an account with default credentials. A successful exploitation could allow the malicious user to access the component Shared HIS with administrative privileges.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

siemens spectrum power 4 -

siemens spectrum power 7 -

siemens spectrum power microgrid management system -

ICS Advisories

Siemens Spectrum Power Systems
Critical Infrastructure Sectors: Energy