CVE-2022-1522 affects the Cognex 3D-A1000 Dimensioning System firmware version 1.0.3 and earlier. This vulnerability, categorized as CWE-117 (Improper Output Neutralization for Logs), allows an attacker to manipulate log entries, specifically creating false records indicating a password change that did not occur. With a CVSS score of 5.3 (Medium), it can be exploited remotely with low attack complexity, impacting data integrity by complicating forensic analysis. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 1.0.3\(3354\)CPE matchmatch criteria | cpe:2.3:o:cognex:3d-a1000_dimensioning_system_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.