CVE-2019-10927 PUBLISHED CVSS 6.5 MEDIUM

A vulnerability has been identified in SCALANCE SC-600 (V2.0), SCALANCE XB-200 (V4.1), SCALANCE XC-200 (V4.1), SCALANCE XF-200BA (V4.1), SCALANCE XP-200 (V4.1), SCALANCE XR-300WG (V4.1). An authenticated attacker with network access to to port 22/tcp of an affected device may cause a Denial-of-Service condition. The security vulnerability could be exploited by an authenticated attacker with network access to the affected device. No user interaction is required to exploit this vulnerability. The vulnerability impacts the availability of the affected device.

EPSS 0.58% · 68.7th percentile

Risk Scores

CVSS v3.1
6.5
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
EPSS Score
0.58%
68.7th percentile

Affected Products

VendorProductVersions
siemensscalance_xp-200_firmware4.1
Siemens AGSCALANCE XR-300WGV4.1
Siemens AGSCALANCE XP-200V4.1
siemensscalance_xc-200_firmware4.1
Siemens AGSCALANCE XF-200BAV4.1
Siemens AGSCALANCE XB-200V4.1
siemensscalance_xr-300wg_firmware4.1
Siemens AGSCALANCE SC-600V2.0
SiemensN/A
siemensscalance_xf-200ba_firmware4.1
Siemens AGSCALANCE XC-200V4.1
siemensscalance_xb-200_firmware4.1

Timeline

References

Open in Interactive Console →