SSA-201498 PUBLISHED CVSS 4.300000190734863 MEDIUM

The web interface of the affected devices are vulnerable to Cross-Site Request Forgery attacks. By tricking an authenticated victim user to click a malicious link, an attacker could perform arbitrary actions on the device on behalf of the victim user.

Risk Scores

CVSS v3.1
4.300000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N

Affected Products

VendorProductVersions
SiemensSICAM P850 (7KG8501-0AA12-0AA0)
SiemensSICAM P855 (7KG8550-0AA10-2AA0)
SiemensSICAM P850 (7KG8501-0AA11-2AA0)
SiemensSICAM P855 (7KG8551-0AA32-0AA0)
SiemensSICAM P850 (7KG8501-0AA01-0AA0)
SiemensSICAM P855 (7KG8550-0AA10-0AA0)
SiemensSICAM P855 (7KG8551-0AA01-0AA0)
SiemensSICAM P855 (7KG8551-0AA12-2AA0)
SiemensSICAM P850 (7KG8501-0AA02-0AA0)
SiemensSICAM P850 (7KG8500-0AA00-2AA0)
SiemensSICAM P855 (7KG8551-0AA31-0AA0)
SiemensSICAM P855 (7KG8550-0AA00-0AA0)
SiemensSICAM P850 (7KG8501-0AA11-0AA0)
SiemensSICAM P850 (7KG8501-0AA31-2AA0)
SiemensSICAM P850 (7KG8501-0AA32-0AA0)
SiemensSICAM P855 (7KG8551-0AA31-2AA0)
SiemensSICAM P855 (7KG8551-0AA12-0AA0)
SiemensSICAM P850 (7KG8500-0AA10-0AA0)
SiemensSICAM P855 (7KG8551-0AA11-0AA0)
SiemensSICAM P850 (7KG8501-0AA02-2AA0)

…and 16 more

Timeline

References

Open in Interactive Console →