CVE-2022-2242

The KUKA SystemSoftware V/KSS in versions prior to 8.6.5 is prone to improper access control as an unauthorized attacker can directly read and write robot configurations when access control is not available or not enabled (default).
References
Link Resource
https://www.kuka.com/advisories-CVE-2022-2242 Mitigation Vendor Advisory
https://www.kuka.com/advisories-CVE-2022-2242 Mitigation Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:kuka:systemsoftware_v\/kss:*:*:*:*:*:*:*:*

History

21 Nov 2024, 07:00

Type Values Removed Values Added
References () https://www.kuka.com/advisories-CVE-2022-2242 - Mitigation, Vendor Advisory () https://www.kuka.com/advisories-CVE-2022-2242 - Mitigation, Vendor Advisory

Information

Published : 2022-08-10 11:15

Updated : 2024-11-21 07:00


NVD link : CVE-2022-2242

Mitre link : CVE-2022-2242

CVE.ORG link : CVE-2022-2242


JSON object : View

Products Affected

kuka

  • systemsoftware_v\/kss
CWE
CWE-306

Missing Authentication for Critical Function