CVE-2018-11449
Summary
| CVE | CVE-2018-11449 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-06-26 18:29:00 UTC |
| Updated | 2019-10-09 23:33:00 UTC |
| Description | A vulnerability has been identified in SCALANCE M875 (All versions). An attacker with access to the local file system might obtain passwords for administrative users. Successful exploitation requires read access to files on the local file system. A successful attack could allow an attacker to obtain administrative passwords. At the time of advisory publication no public exploitation of this security vulnerability was known. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Siemens | Scalance M875 | - | All | All | All |
| Hardware | Siemens | Scalance M875 | - | All | All | All |
| Operating System | Siemens | Scalance M875 Firmware | - | All | All | All |
| Operating System | Siemens | Scalance M875 Firmware | - | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| cert-portal.siemens.com/productcert/pdf/ssa-977428.pdf | CONFIRM | cert-portal.siemens.com | Third Party Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 591096 Siemens SCALANCE M875 Multiple Vulnerabilities (SSA-977428)