CVE-2022-43378
 
Severity Score
6.5
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
A CWE-1021: Improper Restriction of Rendered UI Layers or Frames vulnerability exists that
could cause the user to be tricked into performing unintended actions when external address
frames are not properly restricted.
Affected Products: NetBotz 4 - 355/450/455/550/570 (V4.7.0
and prior)
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2022-10-17 CVE Reserved
- 2023-04-18 CVE Published
- 2024-08-03 CVE Updated
- 2024-11-08 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-1021: Improper Restriction of Rendered UI Layers or Frames
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Schneider-electric Search vendor "Schneider-electric" | Netbotz 355 Firmware Search vendor "Schneider-electric" for product "Netbotz 355 Firmware" | >= 4.0.0 <= 4.7.0 Search vendor "Schneider-electric" for product "Netbotz 355 Firmware" and version " >= 4.0.0 <= 4.7.0" | - |
Affected
| in | Schneider-electric Search vendor "Schneider-electric" | Netbotz 355 Search vendor "Schneider-electric" for product "Netbotz 355" | - | - |
Safe
|
Schneider-electric Search vendor "Schneider-electric" | Netbotz 450 Firmware Search vendor "Schneider-electric" for product "Netbotz 450 Firmware" | >= 4.0.0 <= 4.7.0 Search vendor "Schneider-electric" for product "Netbotz 450 Firmware" and version " >= 4.0.0 <= 4.7.0" | - |
Affected
| in | Schneider-electric Search vendor "Schneider-electric" | Netbotz 450 Search vendor "Schneider-electric" for product "Netbotz 450" | - | - |
Safe
|
Schneider-electric Search vendor "Schneider-electric" | Netbotz 455 Firmware Search vendor "Schneider-electric" for product "Netbotz 455 Firmware" | >= 4.0.0 <= 4.7.0 Search vendor "Schneider-electric" for product "Netbotz 455 Firmware" and version " >= 4.0.0 <= 4.7.0" | - |
Affected
| in | Schneider-electric Search vendor "Schneider-electric" | Netbotz 455 Search vendor "Schneider-electric" for product "Netbotz 455" | - | - |
Safe
|
Schneider-electric Search vendor "Schneider-electric" | Netbotz 550 Firmware Search vendor "Schneider-electric" for product "Netbotz 550 Firmware" | >= 4.0.0 <= 4.7.0 Search vendor "Schneider-electric" for product "Netbotz 550 Firmware" and version " >= 4.0.0 <= 4.7.0" | - |
Affected
| in | Schneider-electric Search vendor "Schneider-electric" | Netbotz 550 Search vendor "Schneider-electric" for product "Netbotz 550" | - | - |
Safe
|
Schneider-electric Search vendor "Schneider-electric" | Netbotz 570 Firmware Search vendor "Schneider-electric" for product "Netbotz 570 Firmware" | >= 4.0.0 <= 4.7.0 Search vendor "Schneider-electric" for product "Netbotz 570 Firmware" and version " >= 4.0.0 <= 4.7.0" | - |
Affected
| in | Schneider-electric Search vendor "Schneider-electric" | Netbotz 570 Search vendor "Schneider-electric" for product "Netbotz 570" | - | - |
Safe
|