CVE-2022-45094EPSS p69.5%

CVE-2022-45094CVE-2022-45094

siemens / sinec_ins

Description

A vulnerability has been identified in SINEC INS (All versions < V1.0 SP2 Update 1). An authenticated remote attacker with access to the Web Based Management (443/tcp) of the affected product, could potentially inject commands into the dhcpd configuration of the affected product. An attacker might leverage this to trigger remote code execution on the affected component.

Scoring

CVSS 8.4 ()
VectorCVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
EPSS1.38% probability of exploitation · percentile 69.5% · 2026-08-03T12:00:16Z
Last modified2026-06-17
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.