Description
A vulnerability has been identified in APOGEE PXC Compact (BACnet) (All versions < V3.5.5), APOGEE PXC Compact (P2 Ethernet) (All versions < V2.8.20), APOGEE PXC Modular (BACnet) (All versions < V3.5.5), APOGEE PXC Modular (P2 Ethernet) (All versions < V2.8.20), TALON TC Compact (BACnet) (All versions < V3.5.5), TALON TC Modular (BACnet) (All versions < V3.5.5). A low privilege authenticated attacker with network access to the integrated web server could download sensitive information from the device containing user account credentials.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-48779 | A vulnerability has been identified in APOGEE PXC Compact (BACnet) (All versions < V3.5.5), APOGEE PXC Compact (P2 Ethernet) (All versions < V2.8.20), APOGEE PXC Modular (BACnet) (All versions < V3.5.5), APOGEE PXC Modular (P2 Ethernet) (All versions < V2.8.20), TALON TC Compact (BACnet) (All versions < V3.5.5), TALON TC Modular (BACnet) (All versions < V3.5.5). A low privilege authenticated attacker with network access to the integrated web server could download sensitive information from the device containing user account credentials. |
References
History
Mon, 21 Apr 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Subscriptions
Siemens
Subscribe
Pxc00-e96.a
Subscribe
Pxc00-e96.a Firmware
Subscribe
Pxc100-e96.a
Subscribe
Pxc100-e96.a Firmware
Subscribe
Pxc16.2-pe.a
Subscribe
Pxc16.2-pe.a Firmware
Subscribe
Pxc24.2-pe.a
Subscribe
Pxc24.2-pe.a Firmware
Subscribe
Pxc24.2-pef.a
Subscribe
Pxc24.2-pef.a Firmware
Subscribe
Pxc24.2-per.a
Subscribe
Pxc24.2-per.a Firmware
Subscribe
Pxc24.2-perf.a
Subscribe
Pxc24.2-perf.a Firmware
Subscribe
Pxx-485.3
Subscribe
Pxx-485.3 Firmware
Subscribe
Talon Tc Modular \(bacnet\)
Subscribe
Talon Tc Modular \(bacnet\) Firmware
Subscribe
Status: PUBLISHED
Assigner: siemens
Published:
Updated: 2025-04-21T13:43:23.146Z
Reserved: 2022-11-28T00:00:00.000Z
Link: CVE-2022-45937
Updated: 2024-08-03T14:24:03.218Z
Status : Modified
Published: 2022-12-13T16:15:24.893
Modified: 2024-11-21T07:30:00.073
Link: CVE-2022-45937
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD