CVE-2022-43378
Summary
| CVE | CVE-2022-43378 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-04-18 21:15:00 UTC |
| Updated | 2023-04-27 19:31:00 UTC |
| Description | A CWE-1021: Improper Restriction of Rendered UI Layers or Frames vulnerability exists that could cause the user to be tricked into performing unintended actions when external address frames are not properly restricted. Affected Products: NetBotz 4 - 355/450/455/550/570 (V4.7.0 and prior) |
Risk And Classification
Problem Types: CWE-1021
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Schneider-electric | Netbotz 355 | - | All | All | All |
| Operating System | Schneider-electric | Netbotz 355 Firmware | All | All | All | All |
| Hardware | Schneider-electric | Netbotz 450 | - | All | All | All |
| Operating System | Schneider-electric | Netbotz 450 Firmware | All | All | All | All |
| Hardware | Schneider-electric | Netbotz 455 | - | All | All | All |
| Operating System | Schneider-electric | Netbotz 455 Firmware | All | All | All | All |
| Hardware | Schneider-electric | Netbotz 550 | - | All | All | All |
| Operating System | Schneider-electric | Netbotz 550 Firmware | All | All | All | All |
| Hardware | Schneider-electric | Netbotz 570 | - | All | All | All |
| Operating System | Schneider-electric | Netbotz 570 Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| download.schneider-electric.com/files | MISC | download.schneider-electric.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 591389 Schneider Electric NetBotz 4 - 355/450/455/550/570 Multiple Vulnerabilities (SEVD-2022-312-01)