QID 590581

Date Published: 2021-12-23

QID 590581: Siemens SCALANCE W1750D (all versions) Multiple Vulnerabilities (ICSA-21-287-07)

AFFECTED PRODUCTS
The following versions of SCALANCE W1750D, a software management platform, are affected:
SCALANCE W1750D: Version 8.7.1.3 or later (Only affected by CVE-2019-5318, CVE-2020-37719, CVE-2021-37717, CVE-2021-37718, CVE-2021-37720, CVE-2021-37721, CVE-2021-37722, CVE-2021-37728)

QID Detection Logic (Authenticated):
QID checks for the Vulnerable version of using passive scanning

Successful exploitation of these vulnerabilities could allow an attacker to inject commands or trigger buffer overflows.

  • CVSS V3 rated as High - 7.2 severity.
  • CVSS V2 rated as Critical - 9 severity.
  • Solution

    Customers are advised to refer to CERT MITIGATIONS section ICSA-21-287-07 for affected packages and patching details.

    Vendor References
    Software Advisories
    Advisory ID Software Component Link
    ICSA-21-287-07 URL Logo www.us-cert.gov/ics/advisories/ICSA-21-287-07