VDB

ICSA-21-103-07

ICSA-21-103-07 PUBLISHED CVSS 9.800000190734863 CRITICAL

Several SCALANCE X-200 switches contain buffer overflow vulnerabilities in the web server. In the most severe case an attacker could potentially remotely execute code. Siemens is preparing updates and recommends specific countermeasures for products where updates are not, or not yet available.

Risk Scores

CVSS v3.1
9.800000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C

Affected Products

VendorProductVersions
SCALANCE X204-2FM
SCALANCE X201-3P IRT PRO
SCALANCE X206-1
SCALANCE X204-2 (incl. SIPLUS NET variant)
SCALANCE X204 IRT
SCALANCE X212-2LD
SCALANCE X202-2P IRT (incl. SIPLUS NET variant)
SCALANCE X206-1LD
SCALANCE X200-4P IRT
SCALANCE X208 (incl. SIPLUS NET variant)
SCALANCE X202-2 IRT
SCALANCE X204-2LD TS
SCALANCE X204 IRT PRO
SCALANCE X204-2TS
SCALANCE X204-2LD (incl. SIPLUS NET variant)
SCALANCE X208PRO
SCALANCE X201-3P IRT
SCALANCE X202-2P IRT PRO
SCALANCE X216
SCALANCE X212-2 (incl. SIPLUS NET variant)

Timeline

  • Apr 13, 2021 CVE Published
  • May 6, 2025 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›