CVE-2022-32747
Summary
| CVE | CVE-2022-32747 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-01-30 23:15:00 UTC |
| Updated | 2023-04-03 17:44:00 UTC |
| Description | A CWE-290: Authentication Bypass by Spoofing vulnerability exists that could cause legitimate users to be locked out of devices or facilitate backdoor account creation by spoofing a device on the local network. Affected Products: EcoStruxure™ Cybersecurity Admin Expert (CAE) (Versions prior to 2.2) |
NVD Known Affected Configurations (CPE 2.3)
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 591044 Schneider Electric EcoStruxure Cybersecurity Admin Expert Multiple Vulnerabilities (SEVD-2022-165-08)