CVE-2022-29884
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A vulnerability has been identified in CP-8000 MASTER MODULE WITH I/O -25/+70°C (All versions < CPC80 V16.30), CP-8000 MASTER MODULE WITH I/O -40/+70°C (All versions < CPC80 V16.30), CP-8021 MASTER MODULE (All versions < CPC80 V16.30), CP-8022 MASTER MODULE WITH GPRS (All versions < CPC80 V16.30). When using the HTTPS server under specific conditions, affected devices do not properly free resources. This could allow an unauthenticated remote attacker to put the device into a denial of service condition.
Se ha identificado una vulnerabilidad en el MASTER MODULE CP-8000 CON E/S -25/+70°C (Todas las versiones anteriores a CPC80 V16.30), MASTER MODULE CP-8000 CON E/S -40/+70°C (Todas las versiones anteriores a CPC80 V16.30), MASTER MODULE CP-8021 (Todas las versiones anteriores a CPC80 V16.30), MASTER MODULE CP-8022 CON GPRS (Todas las versiones anteriores a CPC80 V16.30). Cuando es usado el servidor HTTPS en condiciones específicas, los dispositivos afectados no liberan apropiadamente los recursos. Esto podría permitir a un atacante remoto no autenticado poner el dispositivo en una condición de denegación de servicio
CVSS Scores
SSVC
- Decision:-
Timeline
- 2022-04-28 CVE Reserved
- 2022-07-12 CVE Published
- 2024-08-03 CVE Updated
- 2024-12-17 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-772: Missing Release of Resource after Effective Lifetime
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://cert-portal.siemens.com/productcert/pdf/ssa-491621.pdf | 2022-07-19 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Siemens Search vendor "Siemens" | Sicam A8000 Cp-8000 Firmware Search vendor "Siemens" for product "Sicam A8000 Cp-8000 Firmware" | < 16.30 Search vendor "Siemens" for product "Sicam A8000 Cp-8000 Firmware" and version " < 16.30" | - |
Affected
| in | Siemens Search vendor "Siemens" | Sicam A8000 Cp-8000 Search vendor "Siemens" for product "Sicam A8000 Cp-8000" | - | - |
Safe
|
Siemens Search vendor "Siemens" | Sicam A8000 Cp-8021 Firmware Search vendor "Siemens" for product "Sicam A8000 Cp-8021 Firmware" | < 16.30 Search vendor "Siemens" for product "Sicam A8000 Cp-8021 Firmware" and version " < 16.30" | - |
Affected
| in | Siemens Search vendor "Siemens" | Sicam A8000 Cp-8021 Search vendor "Siemens" for product "Sicam A8000 Cp-8021" | - | - |
Safe
|
Siemens Search vendor "Siemens" | Sicam A8000 Cp-8022 Firmware Search vendor "Siemens" for product "Sicam A8000 Cp-8022 Firmware" | < 16.30 Search vendor "Siemens" for product "Sicam A8000 Cp-8022 Firmware" and version " < 16.30" | - |
Affected
| in | Siemens Search vendor "Siemens" | Sicam A8000 Cp-8022 Search vendor "Siemens" for product "Sicam A8000 Cp-8022" | - | - |
Safe
|