← Back

CVE-2013-5709

nvd nist
Published: Sep 17, 2013Modified: Apr 29, 2026

JSON object

Loading...
8.3
Vector
AV:N/AC:M/Au:N/C:P/I:P/A:C
Exploitability: 8.6 / Impact: 8.5
Source: NVD

Description

The authentication implementation in the web server on Siemens SCALANCE X-200 switches with firmware before 5.0.0 does not use a sufficient source of entropy for generating values of random numbers, which makes it easier for remote attackers to hijack sessions by predicting a value.

Affected (13)

9 products
Scalance X 200 Series Firmware
Scalance X 200
Scalance X 200rna
Scalance X200 4p Irt
Scalance X201 3p Irt
Scalance X202 2irt
Scalance X202 2p Irt
Scalance X204irt
Scalance Xf 200
Configuration A
13 vulnerable
Vulnerable SoftwareAffected Versions
Siemens
Up to 4.4
Version 4.3
All versions
All versions
All versions
Siemens
All versions
All versions
All versions
Siemens
All versions
All versions
Siemens
All versions
All versions
All versions

Related CWEs

Timeline

No history available yet.