CVE-2022-34762
Summary
| CVE | CVE-2022-34762 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-07-13 21:15:00 UTC |
| Updated | 2022-07-28 00:00:00 UTC |
| Description | A CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability exists that could cause unauthorized firmware image loading when unsigned images are added to the firmware image path. Affected Products: X80 advanced RTU Communication Module (BMENOR2200H) (V2.01 and later), OPC UA Modicon Communication Module (BMENUA0100) (V1.10 and prior) |
NVD Known Affected Configurations (CPE 2.3)
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 590966 Schneider Electric OPC UA and X80 Advanced RTU Modicon Communication Modules Multiple Vulnerabilities (SEVD-2022-193-01)