CVE-2022-43724 - CVE House
Back to Database
Status published Unknown CVE-2022-43724

A vulnerability has been identified in SICAM PAS/PQS (All versions...

Vulnerability Description

A vulnerability has been identified in SICAM PAS/PQS (All versions < V7.0). Affected software transmits the database credentials for the inbuilt SQL server in cleartext. In combination with the by default enabled xp_cmdshell feature unauthenticated remote attackers could execute custom OS commands. At the time of assigning the CVE, the affected firmware version of the component has already been superseded by succeeding mainline versions.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-43724

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

SICAM PAS/PQS
Vulnerable Versions:
All versions < V7.0

Timeline

Official Publish: December 13th, 2022
Last Modified: April 22nd, 2025
Added to House: July 21st, 2026

CVSS Vectors

No vector data available

Weaknesses (CWE)