First published: Wed May 04 2022(Updated: )
Information Exposure vulnerability in web UI of Secomea GateManager allows logged in user to query devices outside own scope.
Credit: VulnerabilityReporting@secomea.com
Affected Software | Affected Version | How to fix |
---|---|---|
Secomea Gatemanager 4250 Firmware | <9.7.622134021 | |
Secomea GateManager | ||
Secomea Gatemanager | <9.7.622134021 | |
Secomea GateManager | ||
Secomea Gatemanager 8250 Firmware | <9.7.622134021 | |
Secomea Gatemanager 8250 Firmware | ||
Secomea GateManager | <9.7.622134021 | |
Secomea GateManager |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-25780 is an Information Exposure vulnerability in the web UI of Secomea GateManager that allows a logged-in user to query devices outside their own scope.
Secomea GateManager firmware versions up to 9.7.622134021 are affected by CVE-2022-25780.
CVE-2022-25780 has a severity rating of 4.3 (medium).
To fix CVE-2022-25780, it is recommended to update your Secomea GateManager firmware to a version higher than 9.7.622134021.
You can find more information about CVE-2022-25780 in the Secomea cybersecurity advisory at the following link: [https://www.secomea.com/support/cybersecurity-advisory/](https://www.secomea.com/support/cybersecurity-advisory/)