{
  "resultsPerPage": 1,
  "startIndex": 0,
  "totalResults": 1,
  "format": "NVD_CVE",
  "version": "2.0",
  "timestamp": "2023-05-20T20:15:55.093",
  "vulnerabilities": [
    {
      "cve": {
        "id": "CVE-2022-32222",
        "sourceIdentifier": "support@hackerone.com",
        "published": "2022-07-14T15:15:08.437",
        "lastModified": "2023-02-23T20:15:12.270",
        "vulnStatus": "Modified",
        "descriptions": [
          {
            "lang": "en",
            "value": "A cryptographic vulnerability exists on Node.js on linux in versions of 18.x prior to 18.40.0 which allowed a default path for openssl.cnf that might be accessible under some circumstances to a non-admin user instead of /etc/ssl as was the case in versions prior to the upgrade to OpenSSL 3."
          },
          {
            "lang": "es",
            "value": "Se presenta una vulnerabilidad criptográfica en Node.js en linux en versiones 18.x anteriores a 18.40.0, que permitía una ruta por defecto para openssl.cnf que podría ser accesible en algunas circunstancias para un usuario no administrador en lugar de /etc/ssl como era el caso en las versiones anteriores a la actualización a OpenSSL 3"
          }
        ],
        "metrics": {
          "cvssMetricV31": [
            {
              "source": "nvd@nist.gov",
              "type": "Primary",
              "cvssData": {
                "version": "3.1",
                "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N",
                "attackVector": "NETWORK",
                "attackComplexity": "LOW",
                "privilegesRequired": "NONE",
                "userInteraction": "NONE",
                "scope": "UNCHANGED",
                "confidentialityImpact": "NONE",
                "integrityImpact": "LOW",
                "availabilityImpact": "NONE",
                "baseScore": 5.3,
                "baseSeverity": "MEDIUM"
              },
              "exploitabilityScore": 3.9,
              "impactScore": 1.4
            }
          ]
        },
        "weaknesses": [
          {
            "source": "nvd@nist.gov",
            "type": "Primary",
            "description": [{ "lang": "en", "value": "CWE-326" }]
          },
          {
            "source": "support@hackerone.com",
            "type": "Secondary",
            "description": [{ "lang": "en", "value": "CWE-310" }]
          }
        ],
        "configurations": [
          {
            "nodes": [
              {
                "operator": "OR",
                "negate": false,
                "cpeMatch": [
                  {
                    "vulnerable": true,
                    "criteria": "cpe:2.3:a:nodejs:node.js:*:*:*:*:*:*:*:*",
                    "versionStartIncluding": "18.0.0",
                    "versionEndExcluding": "18.5.0",
                    "matchCriteriaId": "C542B052-1935-4F37-8843-461401EACDCB"
                  }
                ]
              }
            ]
          },
          {
            "nodes": [
              {
                "operator": "OR",
                "negate": false,
                "cpeMatch": [
                  {
                    "vulnerable": true,
                    "criteria": "cpe:2.3:a:siemens:sinec_ins:*:*:*:*:*:*:*:*",
                    "versionEndExcluding": "1.0",
                    "matchCriteriaId": "C89891C1-DFD7-4E1F-80A9-7485D86A15B5"
                  },
                  {
                    "vulnerable": true,
                    "criteria": "cpe:2.3:a:siemens:sinec_ins:1.0:-:*:*:*:*:*:*",
                    "matchCriteriaId": "4664B195-AF14-4834-82B3-0B2C98020EB6"
                  },
                  {
                    "vulnerable": true,
                    "criteria": "cpe:2.3:a:siemens:sinec_ins:1.0:sp1:*:*:*:*:*:*",
                    "matchCriteriaId": "75BC588E-CDF0-404E-AD61-02093A1DF343"
                  },
                  {
                    "vulnerable": true,
                    "criteria": "cpe:2.3:a:siemens:sinec_ins:1.0:sp2:*:*:*:*:*:*",
                    "matchCriteriaId": "A334F7B4-7283-4453-BAED-D2E01B7F8A6E"
                  }
                ]
              }
            ]
          }
        ],
        "references": [
          {
            "url": "https://hackerone.com/reports/1695596",
            "source": "support@hackerone.com"
          }
        ]
      }
    }
  ]
}
