CVE Database
/

CVE-2022-40147

Back to search

CVE-2022-40147

Published: Oct 11, 2022

Modified: Aug 3, 2024

PUBLISHED

Description

A vulnerability has been identified in Industrial Edge Management (All versions < V1.5.1). The affected software does not properly validate the server certificate when initiating a TLS connection. This could allow an attacker to spoof a trusted entity by interfering in the communication path between the client and the intended server.

VendorProductVersions

Siemens

Industrial Edge Management

affected
All versions < V1.5.1

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now