CVE-2020-15800
Key Information:
- Vendor
- Siemens
- Status
- Vendor
- CVE Published:
- 12 January 2021
Summary
A vulnerability has been identified in SCALANCE X-200 switch family (incl. SIPLUS NET variants) (All versions < V5.2.5), SCALANCE X-200IRT switch family (incl. SIPLUS NET variants) (All versions < V5.5.0), SCALANCE X-300 switch family (incl. X408 and SIPLUS NET variants) (All versions < V4.1.0). The webserver of the affected devices contains a vulnerability that may lead to a heap overflow condition. An attacker could cause this condition on the webserver by sending specially crafted requests. This could stop the webserver temporarily.
Affected Version(s)
SCALANCE X-200 switch family (incl. SIPLUS NET variants) All versions < V5.2.5
SCALANCE X-200IRT switch family (incl. SIPLUS NET variants) All versions < V5.5.0
SCALANCE X-300 switch family (incl. X408 and SIPLUS NET variants) All versions < V4.1.0
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved