๐Ÿ” CVE Alert

CVE-2022-40181

UNKNOWN 0.0
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

A vulnerability has been identified in Desigo PXM30-1 (All versions < V02.20.126.11-41), Desigo PXM30.E (All versions < V02.20.126.11-41), Desigo PXM40-1 (All versions < V02.20.126.11-41), Desigo PXM40.E (All versions < V02.20.126.11-41), Desigo PXM50-1 (All versions < V02.20.126.11-41), Desigo PXM50.E (All versions < V02.20.126.11-41), PXG3.W100-1 (All versions < V02.20.126.11-37), PXG3.W100-2 (All versions < V02.20.126.11-41), PXG3.W200-1 (All versions < V02.20.126.11-37), PXG3.W200-2 (All versions < V02.20.126.11-41). The device embedded browser does not prevent interaction with alternative URI schemes when redirected to corresponding resources by web application code. By setting the homepage URI, the favorite URIs, or redirecting embedded browser users via JavaScript code to alternative scheme resources, a remote low privileged attacker can perform a range of attacks against the device, such as read arbitrary files on the filesystem, execute arbitrary JavaScript code in order to steal or manipulate the information on the screen, or trigger denial of service conditions.

CWE CWE-84
Vendor siemens
Product desigo pxm30-1
Ecosystems
Industries
IndustrialManufacturing
Published Oct 11, 2022
Last Updated Aug 3, 2024
Stay Ahead of the Next One

Get instant alerts for siemens desigo pxm30-1

Be the first to know when new unknown vulnerabilities affecting siemens desigo pxm30-1 are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Siemens / Desigo PXM30-1
All versions < V02.20.126.11-41
Siemens / Desigo PXM30.E
All versions < V02.20.126.11-41
Siemens / Desigo PXM40-1
All versions < V02.20.126.11-41
Siemens / Desigo PXM40.E
All versions < V02.20.126.11-41
Siemens / Desigo PXM50-1
All versions < V02.20.126.11-41
Siemens / Desigo PXM50.E
All versions < V02.20.126.11-41
Siemens / PXG3.W100-1
All versions < V02.20.126.11-37
Siemens / PXG3.W100-2
All versions < V02.20.126.11-41
Siemens / PXG3.W200-1
All versions < V02.20.126.11-37
Siemens / PXG3.W200-2
All versions < V02.20.126.11-41

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
cert-portal.siemens.com: https://cert-portal.siemens.com/productcert/pdf/ssa-360783.pdf