A vulnerability has been identified in SICLOCK TC100 (All versions) and SICLOCK TC400 (All versions). An attacker with administrative access to the device's management interface could lock out legitimate users. Manual interaction is required to restore the access of legitimate users.
References
Link | Resource |
---|---|
https://cert-portal.siemens.com/productcert/pdf/ssa-197012.pdf | Mitigation Vendor Advisory |
http://www.securityfocus.com/bid/104672 | Third Party Advisory VDB Entry |
Information
Published : 2018-07-03 07:29
Updated : 2019-10-09 16:41
NVD link : CVE-2018-4856
Mitre link : CVE-2018-4856
JSON object : View
CWE
Products Affected
siemens
- siclock_tc100
- siclock_tc100_firmware
- siclock_tc400
- siclock_tc400_firmware