QID 590704
QID 590704: Siemens and Milestone Siveillance Video Open Network Bridge Vulnerability (ICSA-21-103-15)
AFFECTED PRODUCTS
The following versions of Milestone XProtect Open Network Bridge and Siemens Siveillance Video Open Network Bridge, are affected:
2020 R3
2020 R2
2020 R1
2019 R3
2019 R2
2019 R1
2018 R3
2018 R2
QID Detection Logic (Authenticated):
QID checks for the Vulnerable version of using passive scanning
Successful exploitation of this vulnerability could allow an authenticated remote attacker to retrieve and decrypt all user credentials stored on the ONVIF server.
Solution
Customers are advised to refer to CERT MITIGATIONS section ICSA-21-103-15 for affected packages and patching details.
Vendor References
- ICSA-21-103-15 -
www.us-cert.gov/ics/advisories/ICSA-21-103-15
CVEs related to QID 590704
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| ICSA-21-103-15 |
|