VDB

CNVD-2022-51440

CNVD-2022-51440 PUBLISHED

Siemens SCALANCE X Switches是德国西门子(Siemens)公司的一款工业以太网交换机产品。 Siemens SCALANCE X Switches存在安全漏洞,未经身份验证的远程攻击者可利用该漏洞暴力破解会话ID并劫持现有会话。

Affected Products

VendorProductVersions
Siemens SCALANCE X204-2LD (6GK5204-2BC10-2AA3) <5.2.6
Siemens SCALANCE X201-3P IRT (6GK5201-3BH00-2BA3)
Siemens SCALANCE X204-2 (6GK5204-2BB10-2AA3) <5.2.6
Siemens SCALANCE XF204-2 (6GK5204-2BC00-2AF2) <5.2.6
Siemens SCALANCE X204IRT (6GK5204-0BA00-2BA3)
Siemens SCALANCE X208PRO (6GK5208-0HA10-2AA6) <5.2.6
Siemens SCALANCE X204IRT PRO (6GK5204-0JA10-2BA6)
Siemens SCALANCE X206-1LD (6GK5206-1BC10-2AA3) <5.2.6
Siemens SCALANCE XF208 (6GK5208-0BA00-2AF2) <5.2.6
Siemens SCALANCE X208 (6GK5208-0BA10-2AA3) <5.2.6
Siemens SCALANCE XF204 (6GK5204-0BA00-2AF2) <5.2.6
Siemens SCALANCE XF201-3P IRT (6GK5201-3JR00-2BA6)
Siemens SCALANCE X224 (6GK5224-0BA00-2AA3) <5.2.6
Siemens SCALANCE X204IRT PRO (6GK5204-0JA00-2BA6)
Siemens SCALANCE X202-2P IRT (6GK5202-2BH10-2BA3)
Siemens SCALANCE XF206-1 (6GK5206-1BC00-2AF2) <5.2.6
Siemens SCALANCE X212-2LD (6GK5212-2BC00-2AA3) <5.2.6
Siemens SCALANCE X202-2P IRT (6GK5202-2BH00-2BA3)
Siemens SCALANCE X202-2IRT (6GK5202-2BB10-2BA3)
Siemens SCALANCE X200-4P IRT (6GK5200-4AH10-2BA3)

…and 18 more

Timeline

  • Jul 14, 2022 CVE ID Reserved
  • Jul 14, 2022 CVE Published
Open in Interactive Console →
$ Console Community · 100/wk Open console ›