Critical severity9.8NVD Advisory· Published Sep 28, 2022· Updated Jun 17, 2026
CVE-2022-22522
CVE-2022-22522
Description
In Carlo Gavazzi UWP3.0 in multiple versions and CPY Car Park Server in Version 2.8.3 a remote, unauthenticated attacker could make use of hard-coded credentials to gain full access to the device.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
10- cpe:2.3:a:gavazziautomation:cpy_car_park_server:*:*:*:*:*:*:*:*Range: <2.8.3
cpe:2.3:o:gavazziautomation:uwp_3.0_monitoring_gateway_and_controller_firmware:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:o:gavazziautomation:uwp_3.0_monitoring_gateway_and_controller_firmware:*:*:*:*:*:*:*:*range: <8.5.0.3
- cpe:2.3:o:gavazziautomation:uwp_3.0_monitoring_gateway_and_controller_firmware:*:*:edp:*:*:*:*:*range: <8.5.0.3
- cpe:2.3:o:gavazziautomation:uwp_3.0_monitoring_gateway_and_controller_firmware:*:*:security_enhanced:*:*:*:*:*range: <8.5.0.3
=2.8.3+ 1 more
- (no CPE)range: =2.8.3
- (no CPE)range: 2
- Carlo Gavazzi/UWP 3.0 Monitoring Gateway and Controllerv5Range: 8
- Carlo Gavazzi/UWP 3.0 Monitoring Gateway and Controller – EDP versionv5Range: 8
- Carlo Gavazzi/UWP 3.0 Monitoring Gateway and Controller – Security Enhancedv5Range: 8
Patches
Vulnerability mechanics
References
1- cert.vde.com/en/advisories/VDE-2022-029/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.