« Back to list

Siemens

Siemens 6gk5208-0ha00-2es6 Firmware: vulnerabilities and CVEs

Siemens 6gk5208-0ha00-2es6 Firmware has 8 published vulnerabilities, 0 of them in the last 12 months. 1 are rated critical and 0 are listed by CISA as actively exploited.

CVEs8
Last 12 months0
Critical1
Actively exploited0

All vulnerabilities in the catalogue →⭐ Follow this technology

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2023-44374High (7.1)0.67%—Nov 14, 2023
A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.0), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2) (All versions < V8.0), SCALANCE M804PB…
CVE-2023-44373Critical (9.4)1.3%—Nov 14, 2023
Affected devices do not properly sanitize an input field. This could allow an authenticated remote attacker with administrative privileges to inject code or spawn a system root shell. Follow-up of CVE-2022-36323.
CVE-2023-44322Medium (5.9)0.88%—Nov 14, 2023
A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.0), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2) (All versions < V8.0), SCALANCE M804PB…
CVE-2023-44321Medium (5.1)1.0%—Nov 14, 2023
Affected devices do not properly validate the length of inputs when performing certain configuration changes in the web interface allowing an authenticated attacker to cause a denial of service condition. The device…
CVE-2023-44320Medium (4.3)0.64%—Nov 14, 2023
A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V7.2.2), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2) (All versions < V7.2.2), SCALANCE M804PB…
CVE-2023-44319Medium (6.9)0.45%—Nov 14, 2023
A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.0), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2) (All versions < V8.0), SCALANCE M804PB…
CVE-2023-44318Medium (6.9)0.69%—Nov 14, 2023
Affected devices use a hardcoded key to obfuscate the configuration backup that an administrator can export from the device. This could allow an authenticated attacker with administrative privileges or an attacker that…
CVE-2022-31765High (8.8)0.94%—Oct 11, 2022
Affected devices do not properly authorize the change password function of the web interface. This could allow low privileged users to escalate their privileges.

Other products by Siemens