CVE-2022-1522

MEDIUM

Cognex 3D-A1000 Dimensioning System <1.0.3 (3354) - Info Disclosure

Title source: llm
STIX 2.1

Description

The Cognex 3D-A1000 Dimensioning System in firmware version 1.0.3 (3354) and prior is vulnerable to CWE-117: Improper Output Neutralization for Logs, which allows an attacker to create false logs that show the password as having been changed when it is not, complicating forensics.

Scores

CVSS v3 5.3
EPSS 0.0017
EPSS Percentile 37.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-117
Status published
Products (1)
cognex/3d-a1000_dimensioning_system_firmware < 1.0.3\(3354\)
Published Sep 06, 2022
Tracked Since Feb 18, 2026