QID 591279
Date Published: 2023-01-13
QID 591279: Siemens SCALANCE X-200RNA Switch Devices Denial of Service (DoS), Hijacking of web sessions Multiple Vulnerabilities (ICSA-22-349-02, SSA-363821)
AFFECTED PRODUCTS
SCALANCE X204RNA (HSR) (6GK5204-0BA00-2MB2): All versions prior to V3.2.7
SCALANCE X204RNA (PRP) (6GK5204-0BA00-2KB2): All versions prior to V3.2.7
SCALANCE X204RNA EEC (HSR) (6GK5204-0BS00-2NA3): All versions prior to V3.2.7
SCALANCE X204RNA EEC (PRP) (6GK5204-0BS00-3LA3): All versions prior to V3.2.7
SCALANCE X204RNA EEC (PRP/HSR) (6GK5204-0BS00-3PA3): All versions prior to V3.2.7
QID Detection Logic:
This QID checks for the Vulnerable version of Siemens SCALANCE X-200RNA Switch Devices using passive scanning
Exploitation of these vulnerabilities could result in a denial-of-service condition, hijacking of web sessions, and the loss of confidential or sensitive information.
Customers are advised to refer to CERT MITIGATIONS section ICSA-22-349-02 or Siemens MITIGATIONS section SSA-363821 for affected packages and patching details.
- ICSA-22-349-02 -
www.cisa.gov/uscert/ics/advisories/icsa-22-349-02
CVEs related to QID 591279
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| icsa-22-349-02 |
|
||
| ssa-363821 |
|