VDB
SSA-620338
SSA-620338
PUBLISHED
CVSS 7.800000190734863 HIGH
The affected devices contain an improper null termination vulnerability while parsing a specific HTTP header. This could allow an attacker to execute code in the context of the current process or lead to denial of service condition.
Risk Scores
CVSS 3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Siemens | CPCX26 Central Processing/Communication | |
| Siemens | PCCX26 Ax 1703 PE, Contr, Communication Element | |
| Siemens | ETA5 Ethernet Int. 1x100TX IEC61850 Ed.2 | |
| Siemens | ETA4 Ethernet Interface IEC60870-5-104 |
Timeline
- Jun 11, 2024 CVE Published