A vulnerability has been identified in CoreShield One-Way Gateway (OWG) Software (All versions < V2.2). The default installation sets insecure file permissions that could allow a local attacker to escalate privileges to local administrator.
References
Link | Resource |
---|---|
https://cert-portal.siemens.com/productcert/pdf/ssa-589975.pdf | Vendor Advisory |
Configurations
Information
Published : 2022-09-13 03:15
Updated : 2022-09-15 13:01
NVD link : CVE-2022-38466
Mitre link : CVE-2022-38466
JSON object : View
CWE
CWE-276
Incorrect Default Permissions
Products Affected
siemens
- coreshield_one-way_gateway