CVE-2013-5944

The integrated web server on Siemens SCALANCE X-200 switches with firmware before 4.5.0 and X-200IRT switches with firmware before 5.1.0 does not properly enforce authentication requirements, which allows remote attackers to perform administrative actions via requests to the management interface.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:siemens:scalance_x-200_series_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_x-200_series_firmware:4.3:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_x-200:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:siemens:scalance_x-200_series_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_x-200irt:-:*:*:*:*:*:*:*

Information

Published : 2013-10-03 04:04

Updated : 2020-02-10 07:15


NVD link : CVE-2013-5944

Mitre link : CVE-2013-5944


JSON object : View

CWE
CWE-287

Improper Authentication

Advertisement

dedicated server usa

Products Affected

siemens

  • scalance_x-200_series_firmware
  • scalance_x-200
  • scalance_x-200irt