๐Ÿ” CVE Alert

CVE-2022-36360

UNKNOWN 0.0
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3). Affected devices load firmware updates without checking the authenticity. Furthermore the integrity of the unencrypted firmware is only verified by a non-cryptographic method. This could allow an attacker to manipulate a firmware update and flash it to the device.

CWE CWE-345
Vendor siemens
Product logo! 8 bm (incl. siplus variants)
Ecosystems
Industries
IndustrialManufacturing
Published Oct 11, 2022
Last Updated Aug 3, 2024
Stay Ahead of the Next One

Get instant alerts for siemens logo! 8 bm (incl. siplus variants)

Be the first to know when new unknown vulnerabilities affecting siemens logo! 8 bm (incl. siplus variants) are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Siemens / LOGO! 8 BM (incl. SIPLUS variants)
All versions < V8.3

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
cert-portal.siemens.com: https://cert-portal.siemens.com/productcert/pdf/ssa-928782.pdf