Vulnerability Description
A CWE-1021: Improper Restriction of Rendered UI Layers or Frames vulnerability exists that could cause an adversary to trick the interface user/admin into interacting with the application in an unintended way when the product does not implement restrictions on the ability to render within frames on external addresses. Affected Products: Conext™ ComBox (All Versions)
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Schneider-Electric | Conext Combox Firmware | All versions |
| Schneider-Electric | Conext Combox | - |
Related Weaknesses (CWE)
References
- https://download.schneider-electric.com/files?p_enDocType=Security+and+Safety+NoVendor Advisory
- https://download.schneider-electric.com/files?p_enDocType=Security+and+Safety+NoVendor Advisory
FAQ
What is CVE-2022-32517?
CVE-2022-32517 is a vulnerability with a CVSS score of 6.5 (MEDIUM). A CWE-1021: Improper Restriction of Rendered UI Layers or Frames vulnerability exists that could cause an adversary to trick the interface user/admin into interacting with the application in an uninte...
How severe is CVE-2022-32517?
CVE-2022-32517 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-32517?
Check the references section above for vendor advisories and patch information. Affected products include: Schneider-Electric Conext Combox Firmware, Schneider-Electric Conext Combox.