Security Advisory

CVE-2022-43722

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-12-13 00:00:00
Last updated 2025-04-22 15:26:30
Assigner siemens
State PUBLISHED

Description

A vulnerability has been identified in SICAM PAS/PQS (All versions < V7.0). Affected software does not properly secure a folder containing library files. This could allow an attacker to place a custom malicious DLL in this folder which is then run with SYSTEM rights when a service is started that requires this DLL. At the time of assigning the CVE, the affected firmware version of the component has already been superseded by succeeding mainline versions.