Vulnerability Details CVE-2022-25359
On ICL ScadaFlex II SCADA Controller SC-1 and SC-2 1.03.07 devices, unauthenticated remote attackers can overwrite, delete, or create files.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.176
EPSS Ranking 94.8%
CVSS Severity
CVSS v3 Score 9.1
CVSS v2 Score 6.4
Products affected by CVE-2022-25359
-
cpe:2.3:h:iclinks:scadaflex_ii:-
-
cpe:2.3:o:iclinks:scadaflex_ii_firmware:1.01.01
-
cpe:2.3:o:iclinks:scadaflex_ii_firmware:1.01.14
-
cpe:2.3:o:iclinks:scadaflex_ii_firmware:1.02.01
-
cpe:2.3:o:iclinks:scadaflex_ii_firmware:1.02.15
-
cpe:2.3:o:iclinks:scadaflex_ii_firmware:1.02.20
-
cpe:2.3:o:iclinks:scadaflex_ii_firmware:1.03.07
-
cpe:2.3:o:iclinks:weblib:1.13
-
cpe:2.3:o:iclinks:weblib:1.14
-
cpe:2.3:o:iclinks:weblib:1.16
-
cpe:2.3:o:iclinks:weblib:1.22
-
cpe:2.3:o:iclinks:weblib:1.24