← Back

CVE-2017-12736

nvd nist
Published: Dec 26, 2017Modified: May 13, 2026

JSON object

Loading...
8.8
Vector
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD (Secondary)

Description

After initial configuration, the Ruggedcom Discovery Protocol (RCDP) is still able to write to the device under certain conditions. This could allow an attacker located in the adjacent network of the targeted device to perform unauthorized administrative actions.

Affected (8)

7 products
Scalance Xb 200 Firmware
Scalance Xc 200 Firmware
Scalance Xp 200 Firmware
Scalance Xr300 Wg Firmware
Scalance Xr 500 Firmware
Scalance Xm 400 Firmware
Ruggedcom Ros
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 3.0
Running on/withPlatform Versions
Siemens
Scalance Xb 200
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 3.0
Running on/withPlatform Versions
Siemens
Scalance Xc 200
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 3.0
Running on/withPlatform Versions
Siemens
Scalance Xp 200
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 3.0
Running on/withPlatform Versions
Siemens
Scalance Xr300 Wg
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 6.1
Running on/withPlatform Versions
Siemens
Scalance Xr 500
All versions
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 6.1
Running on/withPlatform Versions
Siemens
Scalance Xm 400
All versions
Configuration G
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 5.0.1
Running on/withPlatform Versions
Siemens
Ruggedcom Rsl910
All versions
Configuration H
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 4.3.4
Running on/withPlatform Versions
Siemens
Ruggedcom
All versions

References (9)

Source: productcert@siemens.com
Third Party AdvisoryVDB Entry
Source: productcert@siemens.com
Third Party AdvisoryVDB Entry
Source: productcert@siemens.com
Third Party AdvisoryVDB Entry
Source: productcert@siemens.com
Issue TrackingMitigationVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingMitigationVendor Advisory

Timeline

No history available yet.