CVE-2022-43723: Input Validation
A vulnerability has been identified in SICAM PAS/PQS (All versions < V7.0), SICAM PAS/PQS (All versions >= 7.0 < V8.06). Affected software does not properly validate the input for a certain parameter in the s7ontcp.dll. This could allow an unauthenticated remote attacker to send messages and create a denial of service condition as the application crashes. At the time of assigning the CVE, the affected firmware version of the component has already been superseded by succeeding mainline versions.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2022-43723?
CVE-2022-43723 has been classified as a moderate severity vulnerability.
How do I fix CVE-2022-43723?
To fix CVE-2022-43723, upgrade to SICAM PAS/PQS version 8.06 or later.
What are the potential impacts of CVE-2022-43723?
CVE-2022-43723 could allow an unauthenticated remote attacker to send unauthorized messages to the affected software.
Which versions are affected by CVE-2022-43723?
All versions of SICAM PAS/PQS prior to 7.0 and those between 7.0 and 8.06 are affected by CVE-2022-43723.
Is remote access necessary to exploit CVE-2022-43723?
Yes, CVE-2022-43723 can be exploited remotely without authentication.