SSA-609469 PUBLISHED CVSS 7.099999904632568 HIGH

Industrial Edge Management contains an authorization bypass vulnerability that could be exploited by an unauthenticated remote attacker to circumvent authentication and to access connected Industrial Edge Devices through the remote connection feature. Siemens has released new versions for the affected products and recommends to update to the latest versions.

Risk Scores

CVSS v3.1
7.099999904632568
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L

Affected Products

VendorProductVersions
Industrial Edge Management Pro V1
Industrial Edge Management Virtual
Industrial Edge Management Pro V2

Timeline

References

Open in Interactive Console →