A CWE-287: Improper Authentication vulnerability exists that could allow an attacker to gain control of the device when logging into a web page. Affected Products: C-Bus Network Automation Controller - LSS5500NAC (Versions prior to V1.10.0), Wiser for C-Bus Automation Controller - LSS5500SHAC (Versions prior to V1.10.0), Clipsal C-Bus Network Automation Controller - 5500NAC (Versions prior to V1.10.0), Clipsal Wiser for C-Bus Automation Controller - 5500SHAC (Versions prior to V1.10.0), SpaceLogic C-Bus Network Automation Controller - 5500NAC2 (Versions prior to V1.10.0), SpaceLogic C-Bus Application Controller - 5500AC2 (Versions prior to V1.10.0)
References
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Configuration 6 (hide)
AND |
|
Information
Published : 2023-01-30 15:15
Updated : 2023-02-08 08:55
NVD link : CVE-2022-32514
Mitre link : CVE-2022-32514
JSON object : View
CWE
CWE-287
Improper Authentication
Products Affected
schneider-electric
- 5500ac2
- 5500nac_firmware
- 5500nac2_firmware
- 5500nac2
- 5500nac
- 5500shac_firmware
- lss5500nac
- lss5500shac
- lss5500shac_firmware
- 5500shac
- 5500ac2_firmware
- lss5500nac_firmware