CVE-2022-46354

A vulnerability has been identified in SCALANCE X204RNA (HSR) (All versions < V3.2.7), SCALANCE X204RNA (PRP) (All versions < V3.2.7), SCALANCE X204RNA EEC (HSR) (All versions < V3.2.7), SCALANCE X204RNA EEC (PRP) (All versions < V3.2.7), SCALANCE X204RNA EEC (PRP/HSR) (All versions < V3.2.7). The webserver of an affected device is missing specific security headers. This could allow an remote attacker to extract confidential session information under certain circumstances.
References
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:siemens:6gk5204-0ba00-2mb2_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:6gk5204-0ba00-2mb2:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:siemens:6gk5204-0ba00-2kb2_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:6gk5204-0ba00-2kb2:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:siemens:6gk5204-0bs00-2na3_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:6gk5204-0bs00-2na3:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:siemens:6gk5204-0bs00-3la3_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:6gk5204-0bs00-3la3:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:siemens:6gk5204-0bs00-3pa3_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:6gk5204-0bs00-3pa3:-:*:*:*:*:*:*:*

Information

Published : 2022-12-13 08:15

Updated : 2022-12-16 06:50


NVD link : CVE-2022-46354

Mitre link : CVE-2022-46354


JSON object : View

Advertisement

dedicated server usa

Products Affected

siemens

  • 6gk5204-0ba00-2mb2
  • 6gk5204-0bs00-2na3
  • 6gk5204-0ba00-2mb2_firmware
  • 6gk5204-0ba00-2kb2_firmware
  • 6gk5204-0bs00-3pa3_firmware
  • 6gk5204-0ba00-2kb2
  • 6gk5204-0bs00-2na3_firmware
  • 6gk5204-0bs00-3la3_firmware
  • 6gk5204-0bs00-3pa3
  • 6gk5204-0bs00-3la3