A vulnerability was discovered in Siemens SiPass integrated (All versions before V2.70) that could allow an attacker with network access to the SiPass integrated server to bypass the authentication mechanism and perform administrative operations.
                
            References
                    | Link | Resource | 
|---|---|
| https://www.siemens.com/cert/pool/cert/siemens_security_advisory_ssa-339433.pdf | Vendor Advisory | 
| http://www.securityfocus.com/bid/99578 | Third Party Advisory VDB Entry | 
Configurations
                    Information
                Published : 2017-08-07 17:29
Updated : 2019-10-09 16:30
NVD link : CVE-2017-9939
Mitre link : CVE-2017-9939
JSON object : View
CWE
                
                    
                        
                        CWE-287
                        
            Improper Authentication
Products Affected
                siemens
- sipass_integrated


