Security Advisory

CVE-2022-29882

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-05-10 09:47:28
Last updated 2025-12-09 10:42:45
Assigner siemens
State PUBLISHED

Description

A vulnerability has been identified in SICAM T (All versions < V3.0). Affected devices do not handle uploaded files correctly. An unauthenticated attacker could take advantage of this situation to store an XSS attack, which could - when a legitimate user accesses the error logs - perform arbitrary actions in the name of the user.