← Back

CVE-2023-44317

nvd nist
Published: Nov 14, 2023Modified: Jan 14, 2025

JSON object

Loading...
8.6
Vector
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Show more
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XShow less
Source: productcert@siemens.com (Secondary)

Description

A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V7.2.2), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2) (All versions < V7.2.2), SCALANCE M804PB (6GK5804-0AP00-2AA2) (All versions < V7.2.2), SCALANCE M812-1 ADSL-Router (6GK5812-1AA00-2AA2) (All versions < V7.2.2), SCALANCE M812-1 ADSL-Router (6GK5812-1BA00-2AA2) (All versions < V7.2.2), SCALANCE M816-1 ADSL-Router (6GK5816-1AA00-2AA2) (All versions < V7.2.2), SCALANCE M816-1 ADSL-Router (6GK5816-1BA00-2AA2) (All versions < V7.2.2), SCALANCE M826-2 SHDSL-Router (6GK5826-2AB00-2AB2) (All versions < V7.2.2), SCALANCE M874-2 (6GK5874-2AA00-2AA2) (All versions < V7.2.2), SCALANCE M874-3 (6GK5874-3AA00-2AA2) (All versions < V7.2.2), SCALANCE M876-3 (6GK5876-3AA02-2BA2) (All versions < V7.2.2), SCALANCE M876-3 (ROK) (6GK5876-3AA02-2EA2) (All versions < V7.2.2), SCALANCE M876-4 (6GK5876-4AA10-2BA2) (All versions < V7.2.2), SCALANCE M876-4 (EU) (6GK5876-4AA00-2BA2) (All versions < V7.2.2), SCALANCE M876-4 (NAM) (6GK5876-4AA00-2DA2) (All versions < V7.2.2), SCALANCE MUM853-1 (EU) (6GK5853-2EA00-2DA1) (All versions < V7.2.2), SCALANCE MUM856-1 (EU) (6GK5856-2EA00-3DA1) (All versions < V7.2.2), SCALANCE MUM856-1 (RoW) (6GK5856-2EA00-3AA1) (All versions < V7.2.2), SCALANCE S615 EEC LAN-Router (6GK5615-0AA01-2AA2) (All versions < V7.2.2), SCALANCE S615 LAN-Router (6GK5615-0AA00-2AA2) (All versions < V7.2.2), SCALANCE WAB762-1 (6GK5762-1AJ00-6AA0) (All versions < V3.0.0), SCALANCE WAM763-1 (6GK5763-1AL00-7DA0) (All versions < V3.0.0), SCALANCE WAM763-1 (ME) (6GK5763-1AL00-7DC0) (All versions < V3.0.0), SCALANCE WAM763-1 (US) (6GK5763-1AL00-7DB0) (All versions < V3.0.0), SCALANCE WAM766-1 (6GK5766-1GE00-7DA0) (All versions < V3.0.0), SCALANCE WAM766-1 (ME) (6GK5766-1GE00-7DC0) (All versions < V3.0.0), SCALANCE WAM766-1 (US) (6GK5766-1GE00-7DB0) (All versions < V3.0.0), SCALANCE WAM766-1 EEC (6GK5766-1GE00-7TA0) (All versions < V3.0.0), SCALANCE WAM766-1 EEC (ME) (6GK5766-1GE00-7TC0) (All versions < V3.0.0), SCALANCE WAM766-1 EEC (US) (6GK5766-1GE00-7TB0) (All versions < V3.0.0), SCALANCE WUB762-1 (6GK5762-1AJ00-1AA0) (All versions < V3.0.0), SCALANCE WUB762-1 iFeatures (6GK5762-1AJ00-2AA0) (All versions < V3.0.0), SCALANCE WUM763-1 (6GK5763-1AL00-3AA0) (All versions < V3.0.0), SCALANCE WUM763-1 (6GK5763-1AL00-3DA0) (All versions < V3.0.0), SCALANCE WUM763-1 (US) (6GK5763-1AL00-3AB0) (All versions < V3.0.0), SCALANCE WUM763-1 (US) (6GK5763-1AL00-3DB0) (All versions < V3.0.0), SCALANCE WUM766-1 (6GK5766-1GE00-3DA0) (All versions < V3.0.0), SCALANCE WUM766-1 (ME) (6GK5766-1GE00-3DC0) (All versions < V3.0.0), SCALANCE WUM766-1 (USA) (6GK5766-1GE00-3DB0) (All versions < V3.0.0). Affected products do not properly validate the content of uploaded X509 certificates which could allow an attacker with administrative privileges to execute arbitrary code on the device.

Affected (69)

Products: Siemens: Scalance Xb208 (e/ip) Firmware, Scalance Xb208 (pn) Firmware, Scalance Xb216 (e/ip) Firmware, Scalance Xb216 (pn) Firmware, Scalance Xc206 2 (sc) Firmware, Scalance Xc206 2 (st/bfoc) Firmware, Scalance Xc206 2g Poe Firmware, Scalance Xc206 2g Poe (54 V Dc) Firmware, Scalance Xc206 2g Poe Eec (54 V Dc) Firmware, Scalance Xc206 2sfp Firmware, Scalance Xc206 2sfp Eec Firmware, Scalance Xc206 2sfp G Firmware, Scalance Xc206 2sfp G (eip Def.) Firmware, Scalance Xc206 2sfp G Eec Firmware, Scalance Xc208 Firmware, Scalance Xc208eec Firmware, Scalance Xc208g Firmware, Scalance Xc208g (eip Def.) Firmware, Scalance Xc208g Eec Firmware, Scalance Xc208g Poe Firmware, Scalance Xc208g Poe (54 V Dc) Firmware, Scalance Xc216 Firmware, Scalance Xc216 3g Poe Firmware, Scalance Xc216 3g Poe (54 V Dc) Firmware, Scalance Xc216 4c Firmware, Scalance Xc216 4c G Firmware, Scalance Xc216 4c G (eip Def.) Firmware, Scalance Xc216 4c G Eec Firmware, Scalance Xc216eec Firmware, Scalance Xc224 Firmware, Scalance Xc224 4c G Firmware, Scalance Xc224 4c G (eip Def.) Firmware, Scalance Xc224 4c G Eec Firmware, Scalance Xf204 Firmware, Scalance Xf204 Dna Firmware, Scalance Xf204 2ba Firmware, Scalance Xf204 2ba Dna Firmware, Scalance Xp208 Firmware, Scalance Xp208 (ethernet/ip) Firmware, Scalance Xp208eec Firmware, Scalance Xp208poe Eec Firmware, Scalance Xp216 Firmware, Scalance Xp216 (ethernet/ip) Firmware, Scalance Xp216eec Firmware, Scalance Xp216poe Eec Firmware, Scalance Xr326 2c Poe Wg Firmware, Scalance Xr326 2c Poe Wg (without Ul) Firmware, Siplus Net Scalance Xc206 2 Firmware, Siplus Net Scalance Xc206 2sfp Firmware, Siplus Net Scalance Xc208 Firmware, Siplus Net Scalance Xc216 4c Firmware, Scalance Xb205 3 (sc, Pn) Firmware, Scalance Xb205 3 (st, E/ip) Firmware, Scalance Xb205 3 (st, Pn) Firmware, Scalance Xb205 3ld (sc, E/ip) Firmware, Scalance Xb205 3ld (sc, Pn) Firmware, Scalance Xb213 3 (sc, E/ip) Firmware, Scalance Xb213 3 (sc, Pn) Firmware, Scalance Xb213 3 (st, E/ip) Firmware, Scalance Xb213 3 (st, Pn) Firmware, Scalance Xb213 3ld (sc, E/ip) Firmware, Scalance Xb213 3ld (sc, Pn) Firmware, Scalance Xr324wg (24 X Fe, Ac 230v) Firmware, Scalance Xr324wg (24 X Fe, Dc 24v) Firmware, Scalance Xr328 4c Wg (24xfe, 4xge, 24v) Firmware, Scalance Xr328 4c Wg (24xfe, 4xge,dc24v) Firmware, Scalance Xr328 4c Wg (24xfe,4xge,ac230v) Firmware, Scalance Xr328 4c Wg (28xge, Ac 230v) Firmware, Scalance Xr328 4c Wg (28xge, Dc 24v) Firmware
69 products
Scalance Xb208 (e/ip) Firmware
Scalance Xb208 (pn) Firmware
Scalance Xb216 (e/ip) Firmware
Scalance Xb216 (pn) Firmware
Scalance Xc206 2 (sc) Firmware
Scalance Xc206 2g Poe Firmware
Scalance Xc206 2sfp Firmware
Scalance Xc206 2sfp Eec Firmware
Scalance Xc206 2sfp G Firmware
Scalance Xc208 Firmware
Scalance Xc208eec Firmware
Scalance Xc208g Firmware
Scalance Xc208g Eec Firmware
Scalance Xc208g Poe Firmware
Scalance Xc216 Firmware
Scalance Xc216 3g Poe Firmware
Scalance Xc216 4c Firmware
Scalance Xc216 4c G Firmware
Scalance Xc216 4c G Eec Firmware
Scalance Xc216eec Firmware
Scalance Xc224 Firmware
Scalance Xc224 4c G Firmware
Scalance Xc224 4c G Eec Firmware
Scalance Xf204 Firmware
Scalance Xf204 Dna Firmware
Scalance Xf204 2ba Firmware
Scalance Xf204 2ba Dna Firmware
Scalance Xp208 Firmware
Scalance Xp208eec Firmware
Scalance Xp208poe Eec Firmware
Scalance Xp216 Firmware
Scalance Xp216eec Firmware
Scalance Xp216poe Eec Firmware
Scalance Xr326 2c Poe Wg Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xb208 (e/ip)
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xb208 (pn)
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xb216 (e/ip)
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xb216 (pn)
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc206 2 (sc)
All versions
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc206 2 (st/bfoc)
All versions
Configuration G
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc206 2g Poe
All versions
Configuration H
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc206 2g Poe (54 V Dc)
All versions
Configuration I
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc206 2g Poe Eec (54 V Dc)
All versions
Configuration J
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc206 2sfp
All versions
Configuration K
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc206 2sfp Eec
All versions
Configuration L
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc206 2sfp G
All versions
Configuration M
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc206 2sfp G (eip Def.)
All versions
Configuration N
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc206 2sfp G Eec
All versions
Configuration O
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc208
All versions
Configuration P
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc208eec
All versions
Configuration Q
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc208g
All versions
Configuration R
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc208g (eip Def.)
All versions
Configuration S
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc208g Eec
All versions
Configuration T
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc208g Poe
All versions
Configuration U
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc208g Poe (54 V Dc)
All versions
Configuration V
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc216
All versions
Configuration W
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc216 3g Poe
All versions
Configuration X
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc216 3g Poe (54 V Dc)
All versions
Configuration Y
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc216 4c
All versions
Configuration Z
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc216 4c G
All versions
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc216 4c G (eip Def.)
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc216 4c G Eec
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc216eec
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc224
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc224 4c G
All versions
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc224 4c G (eip Def.)
All versions
Configuration G
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xc224 4c G Eec
All versions
Configuration H
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xf204
All versions
Configuration I
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xf204 Dna
All versions
Configuration J
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xf204 2ba
All versions
Configuration K
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xf204 2ba Dna
All versions
Configuration L
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xp208
All versions
Configuration M
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xp208 (ethernet/ip)
All versions
Configuration N
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xp208eec
All versions
Configuration O
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xp208poe Eec
All versions
Configuration P
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xp216
All versions
Configuration Q
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xp216 (ethernet/ip)
All versions
Configuration R
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xp216eec
All versions
Configuration S
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xp216poe Eec
All versions
Configuration T
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xr326 2c Poe Wg
All versions
Configuration U
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xr326 2c Poe Wg (without Ul)
All versions
Configuration V
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Siplus Net Scalance Xc206 2
All versions
Configuration W
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Siplus Net Scalance Xc206 2sfp
All versions
Configuration X
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Siplus Net Scalance Xc208
All versions
Configuration Y
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Siplus Net Scalance Xc216 4c
All versions
Configuration Z
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xb205 3 (sc, Pn)
All versions
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xb205 3 (st, E/ip)
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xb205 3 (st, Pn)
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xb205 3ld (sc, E/ip)
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xb205 3ld (sc, Pn)
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xb213 3 (sc, E/ip)
All versions
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xb213 3 (sc, Pn)
All versions
Configuration G
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xb213 3 (st, E/ip)
All versions
Configuration H
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xb213 3 (st, Pn)
All versions
Configuration I
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xb213 3ld (sc, E/ip)
All versions
Configuration J
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xb213 3ld (sc, Pn)
All versions
Configuration K
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xr324wg (24 X Fe, Ac 230v)
All versions
Configuration L
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xr324wg (24 X Fe, Dc 24v)
All versions
Configuration M
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xr328 4c Wg (24xfe, 4xge, 24v)
All versions
Configuration N
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xr328 4c Wg (24xfe, 4xge,dc24v)
All versions
Configuration O
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xr328 4c Wg (24xfe,4xge,ac230v)
All versions
Configuration P
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xr328 4c Wg (28xge, Ac 230v)
All versions
Configuration Q
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Siemens
Scalance Xr328 4c Wg (28xge, Dc 24v)
All versions

Timeline

No history available yet.