Vulnerability Details CVE-2022-4333
Hardcoded Credentials in multiple SPRECON-E CPU variants of Sprecher Automation allows an remote attacker to take over the device. These accounts should be deactivated according to Sprecher's hardening guidelines.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 69.8%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2022-4333
-
cpe:2.3:h:sprecher-automation:sprecon-e-c:-
-
cpe:2.3:h:sprecher-automation:sprecon-e-p_dl6-1:-
-
cpe:2.3:h:sprecher-automation:sprecon-e-p_dq6-1:-
-
cpe:2.3:h:sprecher-automation:sprecon-e-p_ds6-0:-
-
cpe:2.3:h:sprecher-automation:sprecon-e-t3:-
-
cpe:2.3:h:sprecher-automation:sprecon-e-tc_ax-3110:-
-
cpe:2.3:h:sprecher-automation:sprecon-e_ap-2200:-
-
cpe:2.3:h:sprecher-automation:sprecon-e_cp-2131:-
-
cpe:2.3:h:sprecher-automation:sprecon-e_cp-2330:-
-
cpe:2.3:o:sprecher-automation:sprecon-e-c_firmware:-
-
cpe:2.3:o:sprecher-automation:sprecon-e-p_dl6-1_firmware:-
-
cpe:2.3:o:sprecher-automation:sprecon-e-p_dq6-1_firmware:-
-
cpe:2.3:o:sprecher-automation:sprecon-e-p_ds6-0_firmware:-
-
cpe:2.3:o:sprecher-automation:sprecon-e-t3_firmware:-
-
cpe:2.3:o:sprecher-automation:sprecon-e-tc_ax-3110_firmware:-
-
cpe:2.3:o:sprecher-automation:sprecon-e_ap-2200_firmware:-
-
cpe:2.3:o:sprecher-automation:sprecon-e_cp-2131_firmware:-
-
cpe:2.3:o:sprecher-automation:sprecon-e_cp-2330_firmware:-