cert-portal.siemens.com
https://cert-portal.siemens.com/productcert/html/ssa-041082.html CVE-2022-31812
HIGH
Record summary
CVE-2022-31812 has a selected CVSS score of 8.7 (high).
Description
A vulnerability has been identified in SiPass integrated (All versions < V2.95.3.18). Affected server applications contain an out of bounds read past the end of an allocated buffer while checking the integrity of incoming packets. This could allow an unauthenticated remote attacker to create a denial of service condition.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationNone
AutomatableYes
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated May 23, 2025 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
SiPass integratedBrowse Siemens / SiPass integratedDefault status: unknown | CVE List | Before V2.95.3.18 | affected |
References
2nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2022-31812