Vulnerability Details CVE-2022-25782
Improper Handling of Insufficient Privileges vulnerability in Web UI of Secomea GateManager allows logged in user to access and update privileged information. This issue affects: Secomea GateManager versions prior to 9.7.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 35.8%
CVSS Severity
CVSS v3 Score 5.4
CVSS v2 Score 5.5
Products affected by CVE-2022-25782
-
cpe:2.3:h:secomea:gatemanager_4250:-
-
cpe:2.3:h:secomea:gatemanager_4260:-
-
cpe:2.3:h:secomea:gatemanager_8250:-
-
cpe:2.3:h:secomea:gatemanager_9250:-
-
cpe:2.3:o:secomea:gatemanager_4250_firmware:-
-
cpe:2.3:o:secomea:gatemanager_4250_firmware:9.0i
-
cpe:2.3:o:secomea:gatemanager_4260_firmware:-
-
cpe:2.3:o:secomea:gatemanager_4260_firmware:9.0g
-
cpe:2.3:o:secomea:gatemanager_4260_firmware:9.0i
-
cpe:2.3:o:secomea:gatemanager_8250_firmware:9.1b
-
cpe:2.3:o:secomea:gatemanager_8250_firmware:9.2
-
cpe:2.3:o:secomea:gatemanager_8250_firmware:9.2b
-
cpe:2.3:o:secomea:gatemanager_8250_firmware:9.2c
-
cpe:2.3:o:secomea:gatemanager_8250_firmware:9.3
-
cpe:2.3:o:secomea:gatemanager_8250_firmware:9.3a
-
cpe:2.3:o:secomea:gatemanager_8250_firmware:9.4
-
cpe:2.3:o:secomea:gatemanager_8250_firmware:9.4.621054022
-
cpe:2.3:o:secomea:gatemanager_9250_firmware:-
-
cpe:2.3:o:secomea:gatemanager_9250_firmware:9.0g
-
cpe:2.3:o:secomea:gatemanager_9250_firmware:9.0i