Local Password Retrieval Vulnerability in SICAM Products by Siemens
CVE-2020-10040
5.5MEDIUM
Summary
A vulnerability exists in Siemens SICAM products that allows an attacker with local access to potentially obtain passwords in clear text. This affects all versions of SICAM SGU, as well as SICAM MMU versions earlier than V2.05 and SICAM T versions earlier than V2.18. Identifying and mitigating this issue is crucial for maintaining the security of these devices and protecting sensitive information.
Affected Version(s)
SICAM MMU All versions < V2.05
SICAM SGU All versions
SICAM T All versions < V2.18
References
CVSS V3.1
Score:
5.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved