Lucene search

K
cvelistIcscertCVELIST:CVE-2022-46660
HistoryJan 17, 2023 - 11:47 p.m.

CVE-2022-46660

2023-01-1723:47:18
CWE-434
icscert
www.cve.org
5
unauthorized user
alter files
write files
full control
file content

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

EPSS

0.001

Percentile

23.4%

An unauthorized user could alter or write files with full control over the path and content of the file.

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "product": "Proficy Historian",
    "vendor": "GE Digital ",
    "versions": [
      {
        "status": "affected",
        "version": "7.0"
      }
    ]
  }
]

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

EPSS

0.001

Percentile

23.4%

Related for CVELIST:CVE-2022-46660