http://www.nessus.org/u?4af41997
https://cert-portal.siemens.com/productcert/html/ssa-558014.html
https://github.com/libexpat/libexpat/pull/629
https://github.com/libexpat/libexpat/pull/640
https://www.debian.org/security/2022/dsa-5236
https://lists.debian.org/debian-lts-announce/2022/09/msg00029.html
https://security.gentoo.org/glsa/202209-24
http://www.nessus.org/u?4e66e98c
http://www.nessus.org/u?a62d82f5
https://security.netapp.com/advisory/ntap-20221028-0008/
https://www.cisa.gov/news-events/ics-advisories/icsa-23-103-09
http://www.nessus.org/u?291bc448
http://www.nessus.org/u?2bdd746c
Severity: High
ID: 501086
Version: 1.3
Type: remote
Family: Tenable.ot
Published: 5/2/2023
Updated: 9/4/2024
Supported Sensors: Tenable OT Security
Risk Factor: Medium
Score: 6.7
Risk Factor: High
Base Score: 7.6
Temporal Score: 5.6
Vector: CVSS2#AV:N/AC:H/Au:N/C:C/I:C/A:C
CVSS Score Source: CVE-2022-40674
Risk Factor: High
Base Score: 8.1
Temporal Score: 7.1
Vector: CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C
CPE: cpe:/o:siemens:scalance_xcm332_firmware
Required KB Items: Tenable.ot/Siemens
Exploit Ease: No known exploits are available
Patch Publication Date: 9/14/2022
Vulnerability Publication Date: 9/14/2022
CVE: CVE-2022-40674
CWE: 416
DSA: DSA-5236
FEDORA: FEDORA-2022-15ec504440, FEDORA-2022-c22feb71ba, FEDORA-2022-c68d90efc3, FEDORA-2022-d93b3bd8b9, FEDORA-2022-dcb1d7bcb1
GLSA: GLSA-202209-24, GLSA-202211-06
ICSA: 23-103-09