CVE-2022-36360
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3). Affected devices load firmware updates without checking the authenticity. Furthermore the integrity of the unencrypted firmware is only verified by a non-cryptographic method. This could allow an attacker to manipulate a firmware update and flash it to the device.
| CWE | CWE-345 |
| Vendor | siemens |
| Product | logo! 8 bm (incl. siplus variants) |
| Ecosystems | |
| Industries | IndustrialManufacturing |
| Published | Oct 11, 2022 |
| Last Updated | Aug 3, 2024 |
Stay Ahead of the Next One
Get instant alerts for siemens logo! 8 bm (incl. siplus variants)
Be the first to know when new unknown vulnerabilities affecting siemens logo! 8 bm (incl. siplus variants) are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Siemens / LOGO! 8 BM (incl. SIPLUS variants)
All versions < V8.3