QID 590922
Date Published: 2022-07-18
QID 590922: Schneider Electric ConneXium Firewalls Vulnerability (SEVD-2016-300-01)
AFFECTED PRODUCTS
TCSEFEC23F3F20 all versions
TCSEFEC23F3F21 all versions
TCSEFEC23FCF20 all versions
TCSEFEC23FCF21 all versions
TCSEFEC2CF3F20 all versions
QID Detection Logic (Authenticated):
QID checks for the Vulnerable version of using passive scanning
ConneXium Firewalls are vulnerable to buffer overflow that can be triggered during the SNMP login authentication process
Customers are advised to refer to CERT MITIGATIONS section SEVD-2016-300-01 for affected packages and patching details.Workaround:
1) Disable RADIUS for user authentication: If RADIUS authentication is disabled for user authentication, the vulnerability is not exploitable.
2) Allow web server access (login requests) from known IP addresses network only If the access to the web server can be restricted from known IP addresses and networks, the access from outside unknown network can be avoided.
3) Disable Web Server Alternatively if you do not need the web service you can disable the web server.
- SEVD-2016-300-01 -
www.se.com/ww/en/download/document/SEVD-2016-300-01/
CVEs related to QID 590922
| Advisory ID | Software | Component | Link |
|---|