CVE-2022-22722
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A CWE-798: Use of Hard-coded Credentials vulnerability exists that could result in information disclosure. If an attacker were to obtain the SSH cryptographic key for the device and take active control of the local operational network connected to the product they could potentially observe and manipulate traffic associated with product configuration. Affected Product: Easergy P5 (All firmware versions prior to V01.401.101)
Una CWE-798: Se presenta un uso de credenciales embebidas que podría resultar en una divulgación de información. Si un atacante obtuviera la clave criptográfica SSH del dispositivo y tomara el control activo de la red operativa local conectada al producto, podría observar y manipular el tráfico asociado a la configuración del producto. Producto afectado: Easergy P5 (todas las versiones de firmware anteriores a V01.401.101)
CVSS Scores
SSVC
- Decision:-
Timeline
- 2022-01-06 CVE Reserved
- 2022-02-04 CVE Published
- 2024-08-03 CVE Updated
- 2024-10-20 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-798: Use of Hard-coded Credentials
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2022-011-03 | 2022-02-10 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Schneider-electric Search vendor "Schneider-electric" | Easergy P5 Firmware Search vendor "Schneider-electric" for product "Easergy P5 Firmware" | < 01.401.101 Search vendor "Schneider-electric" for product "Easergy P5 Firmware" and version " < 01.401.101" | - |
Affected
| in | Schneider-electric Search vendor "Schneider-electric" | Easergy P5 Search vendor "Schneider-electric" for product "Easergy P5" | - | - |
Safe
|