Sicam Gridedge Essential Siemens Sicam Gridedge Essential

Do you want an email whenever new security vulnerabilities are reported in Siemens Sicam Gridedge Essential?

By the Year

In 2022 there have been 4 vulnerabilities in Siemens Sicam Gridedge Essential with an average score of 6.5 out of ten. Sicam Gridedge Essential did not have any published security vulnerabilities last year. That is, 4 more vulnerabilities have already been reported in 2022 as compared to last year.

Year Vulnerabilities Average Score
2022 4 6.48
2021 0 0.00
2020 0 0.00
2019 0 0.00
2018 0 0.00

It may take a day or so for new Sicam Gridedge Essential vulnerabilities to show up in the stats or in the list of recent security vulnerabilties. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Siemens Sicam Gridedge Essential Security Vulnerabilities

A vulnerability has been identified in SICAM GridEdge Essential ARM (All versions < V2.6.6)

CVE-2022-30231 4.3 - Medium - June 14, 2022

A vulnerability has been identified in SICAM GridEdge Essential ARM (All versions < V2.6.6), SICAM GridEdge Essential Intel (All versions < V2.6.6), SICAM GridEdge Essential with GDS ARM (All versions < V2.6.6), SICAM GridEdge Essential with GDS Intel (All versions < V2.6.6). The affected software discloses password hashes of other users upon request. This could allow an authenticated user to retrieve another users password hash.

Insufficiently Protected Credentials

A vulnerability has been identified in SICAM GridEdge Essential ARM (All versions < V2.6.6)

CVE-2022-30230 9.8 - Critical - June 14, 2022

A vulnerability has been identified in SICAM GridEdge Essential ARM (All versions < V2.6.6), SICAM GridEdge Essential Intel (All versions < V2.6.6), SICAM GridEdge Essential with GDS ARM (All versions < V2.6.6), SICAM GridEdge Essential with GDS Intel (All versions < V2.6.6). The affected software does not require authenticated access for privileged functions. This could allow an unauthenticated attacker to create a new user with administrative permissions.

Missing Authentication for Critical Function

A vulnerability has been identified in SICAM GridEdge Essential ARM (All versions < V2.6.6)

CVE-2022-30229 5.3 - Medium - June 14, 2022

A vulnerability has been identified in SICAM GridEdge Essential ARM (All versions < V2.6.6), SICAM GridEdge Essential Intel (All versions < V2.6.6), SICAM GridEdge Essential with GDS ARM (All versions < V2.6.6), SICAM GridEdge Essential with GDS Intel (All versions < V2.6.6). The affected software does not require authenticated access for privileged functions. This could allow an unauthenticated attacker to change data of an user, such as credentials, in case that user's id is known.

authentification

A vulnerability has been identified in SICAM GridEdge Essential ARM (All versions < V2.6.6)

CVE-2022-30228 6.5 - Medium - June 14, 2022

A vulnerability has been identified in SICAM GridEdge Essential ARM (All versions < V2.6.6), SICAM GridEdge Essential Intel (All versions < V2.6.6), SICAM GridEdge Essential with GDS ARM (All versions < V2.6.6), SICAM GridEdge Essential with GDS Intel (All versions < V2.6.6). The affected software does not apply cross-origin resource sharing (CORS) restrictions for critical operations. In case an attacker tricks a legitimate user into accessing a special resource a malicious request could be executed.

Origin Validation Error

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Siemens Sicam Gridedge Essential or by Siemens? Click the Watch button to subscribe.

Siemens
Vendor

subscribe