cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2022-22807,https://securityvulnerability.io/vulnerability/CVE-2022-22807,Improper UI Layer Restrictions in EcoStruxure EV Charging Expert by Schneider Electric,"An improper restriction vulnerability exists in EcoStruxure EV Charging Expert by Schneider Electric, which allows attackers to manipulate UI layers using deceptive techniques. By tricking users into interacting with a malicious web interface rendered within iframes, attackers can potentially alter product settings or gain unauthorized access to user accounts. This exposes users to significant security risks, warranting immediate attention to mitigate the effects of such attacks.",Schneider Electric,"Ecostruxure Ev Charging Expert (formerly Known As Evlink Load Management System): (hmibscea53d1edb, Hmibscea53d1eds, Hmibscea53d1edm, Hmibscea53d1edl, Hmibscea53d1ess, Hmibscea53d1esm, Hmibscea53d1eml) (all Versions Prior To Sp8 (version 01) V4.0.0.13)",7.4,HIGH,0.000750000006519258,false,,false,false,false,,,false,false,,2022-02-09T00:00:00.000Z,0 CVE-2022-22808,https://securityvulnerability.io/vulnerability/CVE-2022-22808,Cross-Site Request Forgery Vulnerability in EcoStruxure EV Charging Expert by Schneider Electric,"A cross-site request forgery (CSRF) vulnerability in EcoStruxure EV Charging Expert allows remote attackers to exploit the same-origin policy or bypass CSRF protections. This could grant them unauthorized access to the system, compromising the integrity and confidentiality of user interactions. All versions prior to SP8 (Version 01) V4.0.0.13 are affected, including numerous specific model numbers.",Schneider Electric,"Ecostruxure Ev Charging Expert (formerly Known As Evlink Load Management System): (hmibscea53d1edb, Hmibscea53d1eds, Hmibscea53d1edm, Hmibscea53d1edl, Hmibscea53d1ess, Hmibscea53d1esm, Hmibscea53d1eml) (all Versions Prior To Sp8 (version 01) V4.0.0.13)",8.8,HIGH,0.0012100000167265534,false,,false,false,false,,,false,false,,2022-02-09T00:00:00.000Z,0