Arbitrary Command Execution Vulnerability in Siemens SCALANCE SC-600
CVE-2019-10928
6.6MEDIUM
What is CVE-2019-10928?
A vulnerability has been discovered in the Siemens SCALANCE SC-600 version 2.0, where an authenticated attacker with access to port 22/tcp and physical access to the device can execute arbitrary commands. This flaw does not necessitate user interaction, making it particularly dangerous, as it poses significant risks to the confidentiality, integrity, and availability of the device. Organizations using this product should take immediate action to protect against potential exploitation.
Affected Version(s)
SCALANCE SC-600 V2.0