Vulnerability Details CVE-2022-34464
A vulnerability has been identified in SICAM GridEdge Essential ARM (All versions), SICAM GridEdge Essential Intel (All versions < V2.7.3), SICAM GridEdge Essential with GDS ARM (All versions), SICAM GridEdge Essential with GDS Intel (All versions < V2.7.3). Affected software uses an improperly protected file to import SSH keys. Attackers with access to the filesystem of the host on which SICAM GridEdge runs, are able to inject a custom SSH key to that file.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 32.5%
CVSS Severity
CVSS v3 Score 5.5
CVSS v2 Score 2.1
Products affected by CVE-2022-34464
-
cpe:2.3:a:siemens:sicam_gridedge_essential_arm:-
-
cpe:2.3:a:siemens:sicam_gridedge_essential_gds_arm:-
-
cpe:2.3:a:siemens:sicam_gridedge_essential_gds_intel:*
-
cpe:2.3:a:siemens:sicam_gridedge_essential_intel:*