7.1
CVSSv2

CVE-2022-29884

Published: 12/07/2022 Updated: 19/07/2022
CVSS v2 Base Score: 7.1 | Impact Score: 6.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 632
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:C

Vulnerability Summary

A vulnerability has been identified in CP-8000 MASTER MODULE WITH I/O -25/+70°C (All versions < CPC80 V16.30), CP-8000 MASTER MODULE WITH I/O -40/+70°C (All versions < CPC80 V16.30), CP-8021 MASTER MODULE (All versions < CPC80 V16.30), CP-8022 MASTER MODULE WITH GPRS (All versions < CPC80 V16.30). When using the HTTPS server under specific conditions, affected devices do not properly free resources. This could allow an unauthenticated remote malicious user to put the device into a denial of service condition.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

siemens sicam_a8000_cp-8000_firmware

siemens sicam_a8000_cp-8021_firmware

siemens sicam_a8000_cp-8022_firmware

ICS Advisories

Siemens CPC80 Firmware of SICAM A8000
Critical Infrastructure Sectors: Energy