๐Ÿ” CVE Alert

CVE-2022-21936

HIGH 8.1

Metasys MVE

CVSS Score
8.1
EPSS Score
0.0%
EPSS Percentile
0th

On Metasys ADX Server version 12.0 running MVE, an Active Directory user could execute validated actions without providing a valid password when using MVE SMP UI.

Vendor n/a
Product n/a
Published Oct 7, 2022
Last Updated Sep 16, 2024
Stay Ahead of the Next One

Get instant alerts for n/a n/a

Be the first to know when new high vulnerabilities affecting n/a n/a are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
High
Availability
High

Affected Versions

n/a / n/a
n/a

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
johnsoncontrols.com: https://www.johnsoncontrols.com/cyber-solutions/security-advisories cisa.gov: https://www.cisa.gov/uscert/ics/advisories/icsa-22-277-01