Siemens
Siemens Scalance M875 Firmware: vulnerabilidades y CVE
Siemens Scalance M875 Firmware tiene 6 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE6
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2018-4861 | Media (4.9) | 1.9% | — | 26 jun 2018 | A vulnerability has been identified in SCALANCE M875 (All versions). An authenticated remote attacker with access to the web interface (443/tcp), could potentially read and download arbitrary files from the device's… |
| CVE-2018-4860 | Alta (7.2) | 3.7% | — | 26 jun 2018 | A vulnerability has been identified in SCALANCE M875 (All versions). An authenticated remote attacker with access to the web interface (443/tcp), could execute arbitrary operating system commands. Successful… |
| CVE-2018-4859 | Alta (7.2) | 3.7% | — | 26 jun 2018 | A vulnerability has been identified in SCALANCE M875 (All versions). An authenticated remote attacker with access to the web interface (443/tcp), could execute arbitrary operating system commands. Successful… |
| CVE-2018-11449 | Alta (7.8) | 0.42% | — | 26 jun 2018 | A vulnerability has been identified in SCALANCE M875 (All versions). An attacker with access to the local file system might obtain passwords for administrative users. Successful exploitation requires read access to… |
| CVE-2018-11448 | Media (4.8) | 0.32% | — | 26 jun 2018 | A vulnerability has been identified in SCALANCE M875 (All versions). The web interface on port 443/tcp could allow a stored Cross-Site Scripting (XSS) attack if an unsuspecting user is tricked into accessing a malicious… |
| CVE-2018-11447 | Alta (8.8) | 0.58% | — | 26 jun 2018 | A vulnerability has been identified in SCALANCE M875 (All versions). The web interface on port 443/tcp could allow a Cross-Site Request Forgery (CSRF) attack if an unsuspecting user is tricked into accessing a malicious… |