CVE Vulnerabilities

CVE-2022-3079

Improper Privilege Management

Published: Sep 20, 2022 | Modified: Sep 21, 2022
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

Festo control block CPX-CEC-C1 and CPX-CMXX in multiple versions allow unauthenticated, remote access to critical webpage functions which may cause a denial of service.

Weakness

The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.

Affected Software

Name Vendor Start Version End Version
Cpx-cmxx_firmware Festo * 2.0.12 (including)

Potential Mitigations

References