CVE-2022-46142
CVSS 3.1 Score 4.6 of 10 (medium)
Details
Published Dec 13, 2022
Updated: Jan 14, 2025
CWE ID 522
CWE ID 257
Summary
CVE-2022-46142 is a vulnerability affecting certain devices where the Command Line Interface (CLI) user passwords are encrypted and stored in the flash memory. If an attacker gains physical access to the device, they can retrieve the file containing these passwords and decrypt them, potentially compromising the affected system. This issue highlights the importance of securing devices from both remote and physical attacks, including implementing strong encryption and access controls for sensitive data.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Siemens AG