#VU69172 Input validation error in POWER METER SICAM Q100 (7KG9501-0AA01-2AA1) and POWER METER SICAM Q100 (7KG9501-0AA31-2AA1) - CVE-2022-43546
Published: November 9, 2022 / Updated: November 11, 2022
POWER METER SICAM Q100 (7KG9501-0AA01-2AA1)
POWER METER SICAM Q100 (7KG9501-0AA31-2AA1)
Siemens
Description
The vulnerability allows a remote attacker to execute arbitrary code on the system.
The vulnerability exists due to insufficient validation of user-supplied input within the EndTime-parameter. A remote user can pass specially crafted input to the application and execute arbitrary code on the target system.