CVE-2022-30233: Input Validation
Published Jun 2, 2022
·Updated
A CWE-20: Improper Input Validation vulnerability exists that could allow the product to be maliciously manipulated when the user is tricked into performing certain actions on a webpage. Affected Products: Wiser Smart, EER21000 & EER21001 (V4.5 and prior)
Affected Software
4 affected components
Schneider-electric Wiser Smart Eer21000 Firmware<=4.5
Schneider-electric Wiser Smart Eer21000
Schneider-electric Wiser Smart Eer21001 Firmware<=4.5
Schneider-electric Wiser Smart Eer21001
Event History
Jun 2, 2022
CVE Published
via MITRE·10:45 PM
Data Sourced
via MITRE·10:45 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-30233?
CVE-2022-30233 is considered a medium severity vulnerability due to improper input validation.
2
How do I fix CVE-2022-30233?
To fix CVE-2022-30233, upgrade the affected Wiser Smart firmware to a version greater than 4.5.
3
Which products are affected by CVE-2022-30233?
CVE-2022-30233 affects Schneider Electric Wiser Smart EER21000 and EER21001 firmware versions 4.5 and prior.
4
What type of vulnerability is CVE-2022-30233?
CVE-2022-30233 is classified as a CWE-20: Improper Input Validation vulnerability.
5
What could exploit CVE-2022-30233?
CVE-2022-30233 could be exploited if a user is tricked into performing specific actions on a compromised webpage.