Vulnerabilities > CVE-2022-36325 - Unspecified vulnerability in Siemens products

047910
CVSS 4.8 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
HIGH
Confidentiality impact
LOW
Integrity impact
LOW
Availability impact
NONE
network
low complexity
siemens

Summary

Affected devices do not properly sanitize data introduced by an user when rendering the web interface. This could allow an authenticated remote attacker with administrative privileges to inject code and lead to a DOM-based XSS.

Vulnerable Configurations

Part Description Count
OS
Siemens
94
Hardware
Siemens
91