CVE-2023-44373
9.4
Vector
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XShow more
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XShow less
Source: productcert@siemens.com (Secondary)
Description
Affected devices do not properly sanitize an input field. This could allow an authenticated remote attacker with administrative privileges to inject code or spawn a system root shell. Follow-up of CVE-2022-36323.
Affected (71)
Products: Siemens: 6gk5205 3bb00 2ab2 Firmware, 6gk5205 3bb00 2tb2 Firmware, 6gk5205 3bd00 2tb2 Firmware, 6gk5205 3bd00 2ab2 Firmware, 6gk5205 3bf00 2tb2 Firmware, 6gk5205 3bf00 2ab2 Firmware, 6gk5208 0ba00 2tb2 Firmware, 6gk5208 0ba00 2ab2 Firmware, 6gk5213 3bd00 2tb2 Firmware, 6gk5213 3bd00 2ab2 Firmware, 6gk5213 3bb00 2tb2 Firmware, 6gk5213 3bb00 2ab2 Firmware, 6gk5213 3bf00 2tb2 Firmware, 6gk5213 3bf00 2ab2 Firmware, 6gk5216 0ba00 2tb2 Firmware, 6gk5216 0ba00 2ab2 Firmware, 6gk5206 2bd00 2ac2 Firmware, 6gk5206 2bb00 2ac2 Firmware, 6gk5206 2rs00 2ac2 Firmware, 6gk5206 2rs00 5ac2 Firmware, 6gk5206 2rs00 5fc2 Firmware, 6gk5206 2bs00 2ac2 Firmware, 6gk5206 2bs00 2fc2 Firmware, 6gk5206 2gs00 2ac2 Firmware, 6gk5206 2gs00 2tc2 Firmware, 6gk5206 2gs00 2fc2 Firmware, 6gk5208 0ba00 2ac2 Firmware, 6gk5208 0ba00 2fc2 Firmware, 6gk5208 0ga00 2ac2 Firmware, 6gk5208 0ga00 2tc2 Firmware, 6gk5208 0ga00 2fc2 Firmware, 6gk5208 0ra00 2ac2 Firmware, 6gk5208 0ra00 5ac2 Firmware, 6gk5216 0ba00 2ac2 Firmware, 6gk5216 3rs00 2ac2 Firmware, 6gk5216 3rs00 5ac2 Firmware, 6gk5216 4bs00 2ac2 Firmware, 6gk5216 4gs00 2ac2 Firmware, 6gk5216 4gs00 2tc2 Firmware, 6gk5216 4gs00 2fc2 Firmware, 6gk5216 0ba00 2fc2 Firmware, 6gk5224 0ba00 2ac2 Firmware, 6gk5224 4gs00 2ac2 Firmware, 6gk5224 4gs00 2tc2 Firmware, 6gk5224 4gs00 2fc2 Firmware, 6gk5204 0ba00 2gf2 Firmware, 6gk5204 0ba00 2yf2 Firmware, 6gk5204 2aa00 2gf2 Firmware, 6gk5204 2aa00 2yf2 Firmware, 6gk5208 0ha00 2as6 Firmware, 6gk5208 0ha00 2ts6 Firmware, 6gk5208 0ha00 2es6 Firmware, 6gk5208 0ua00 5es6 Firmware, 6gk5216 0ha00 2as6 Firmware, 6gk5216 0ha00 2ts6 Firmware, 6gk5216 0ha00 2es6 Firmware, 6gk5216 0ua00 5es6 Firmware, 6gk5324 0ba00 3ar3 Firmware, 6gk5324 0ba00 2ar3 Firmware, 6gk5326 2qs00 3ar3 Firmware, 6gk5326 2qs00 3rr3 Firmware, 6gk5328 4fs00 3ar3 Firmware, 6gk5328 4fs00 3rr3 Firmware, 6gk5328 4fs00 2ar3 Firmware, 6gk5328 4fs00 2rr3 Firmware, 6gk5328 4ss00 3ar3 Firmware, 6gk5328 4ss00 2ar3 Firmware, 6ag1206 2bb00 7ac2 Firmware, 6ag1206 2bs00 7ac2 Firmware, 6ag1208 0ba00 7ac2 Firmware, 6ag1216 4bs00 7ac2 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5205 3bb00 2ab2 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5205 3bb00 2tb2 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5205 3bd00 2tb2 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5205 3bd00 2ab2 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5205 3bf00 2tb2 | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5205 3bf00 2ab2 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5208 0ba00 2tb2 | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5208 0ba00 2ab2 | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5213 3bd00 2tb2 | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5213 3bd00 2ab2 | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5213 3bb00 2tb2 | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5213 3bb00 2ab2 | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5213 3bf00 2tb2 | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5213 3bf00 2ab2 | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5216 0ba00 2tb2 | All versions |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5216 0ba00 2ab2 | All versions |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5206 2bd00 2ac2 | All versions |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5206 2bb00 2ac2 | All versions |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5206 2rs00 2ac2 | All versions |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5206 2rs00 5ac2 | All versions |
Configuration U
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5206 2rs00 5fc2 | All versions |
Configuration V
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5206 2bs00 2ac2 | All versions |
Configuration W
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5206 2bs00 2fc2 | All versions |
Configuration X
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5206 2gs00 2ac2 | All versions |
Configuration Y
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5206 2gs00 2tc2 | All versions |
Configuration Z
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5206 2gs00 2fc2 | All versions |
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5208 0ba00 2ac2 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5208 0ba00 2fc2 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5208 0ga00 2ac2 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5208 0ga00 2tc2 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5208 0ga00 2fc2 | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5208 0ra00 2ac2 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5208 0ra00 5ac2 | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5216 0ba00 2ac2 | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5216 3rs00 2ac2 | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5216 3rs00 5ac2 | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5216 4bs00 2ac2 | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5216 4gs00 2ac2 | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5216 4gs00 2tc2 | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5216 4gs00 2fc2 | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5216 0ba00 2fc2 | All versions |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5224 0ba00 2ac2 | All versions |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5224 4gs00 2ac2 | All versions |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5224 4gs00 2tc2 | All versions |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5224 4gs00 2fc2 | All versions |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5204 0ba00 2gf2 | All versions |
Configuration U
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5204 0ba00 2yf2 | All versions |
Configuration V
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5204 2aa00 2gf2 | All versions |
Configuration W
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5204 2aa00 2yf2 | All versions |
Configuration X
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5208 0ha00 2as6 | All versions |
Configuration Y
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5208 0ha00 2ts6 | All versions |
Configuration Z
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5208 0ha00 2es6 | All versions |
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5208 0ua00 5es6 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5216 0ha00 2as6 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5216 0ha00 2ts6 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5216 0ha00 2es6 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5216 0ua00 5es6 | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5324 0ba00 3ar3 | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5324 0ba00 2ar3 | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5326 2qs00 3ar3 | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5326 2qs00 3rr3 | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5328 4fs00 3ar3 | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5328 4fs00 3rr3 | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5328 4fs00 2ar3 | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5328 4fs00 2rr3 | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5328 4ss00 3ar3 | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6gk5328 4ss00 2ar3 | All versions |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6ag1206 2bb00 7ac2 | All versions |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6ag1206 2bs00 7ac2 | All versions |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6ag1208 0ba00 7ac2 | All versions |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Before 4.5 |
| Running on/with | Platform Versions |
|---|---|
Siemens 6ag1216 4bs00 7ac2 | All versions |
References (14)
Source: productcert@siemens.com
Source: productcert@siemens.com
Source: productcert@siemens.com
Source: productcert@siemens.com
Source: productcert@siemens.com
Source: productcert@siemens.com
Source: productcert@siemens.com
Source: productcert@siemens.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.