CVE-2022-29882

Publication date

2022-05-10 09:47:28

Family

siemens

State

PUBLISHED

Description

A vulnerability has been identified in SICAM T (All versions < V3.0). Affected devices do not handle uploaded files correctly. An unauthenticated attacker could take advantage of this situation to store an XSS attack, which could - when a legitimate user accesses the error logs - perform arbitrary actions in the name of the user.