Siemens SCALANCE Improper Neutralization of Special Elements in Output Used By a Downstream Component (CVE-2022-36323)

critical Tenable OT Security Plugin ID 500742

Version 1.4

Sep 6, 2023, 4:18 PM

  • Exploit attributes ("Exploit available" set to "False")
  • CVSSv3 score source (set to "CVE-2022-36323")
  • CVSS temporal metrics ("CVSSv2 temporal vector" set to "CVSS2#E:U/RL:OF/RC:C". "CVSSv3 temporal vector" set to "CVSS:3.0/E:U/RL:O/RC:C")
  • CVSS metrics ("CVSSv2 score" set to 8.3. "CVSSv3 vector" changed from "CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" to "CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H". "CVSSv3 score" changed from 7.2 to 9.1. "CVSSv2 vector" set to "CVSS2#AV:N/AC:L/Au:M/C:C/I:C/A:C")

Plugin Feed: 202309061618