Network Security Vulnerability in Siemens RUGGEDCOM ROS
CVE-2015-6675

Currently unrated

Key Information:

Vendor
Siemens
Vendor
CVE Published:
11 September 2015

Summary

The Siemens RUGGEDCOM ROS software versions 3.8.0 through 4.1.x feature a vulnerability that permanently enables the IP forwarding function. This misconfiguration permits remote attackers to circumvent VLAN isolation controls by routing unauthorized IP traffic. Organizations using this software are encouraged to assess their network configurations to ensure VLAN security measures are adequately enforced.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.