SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2022-34290

A vulnerability has been identified in PADS Standard/Plus Viewer (All versions).

MEDIUM 5.5EPSS 1.12%

Does this matter?

Lower severity and a low EPSS score (1.12%). Track it; it rarely justifies an emergency change on its own.

Description

A vulnerability has been identified in PADS Standard/Plus Viewer (All versions). The affected application contains a stack corruption vulnerability while parsing PCB files. An attacker could leverage this vulnerability to leak information in the context of the current process. (FG-VD-22-055)

CVSS 3.1
5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
EPSS
1.12% probability · 64th percentile
CISA KEV
Not listed
Weakness
CWE-119, CWE-787
Affected
siemens/pads viewer
Source
productcert@siemens.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.