Siemens
Siemens 6gk5328-4fs00-3ar3 Firmware: vulnerabilidades y CVE
Siemens 6gk5328-4fs00-3ar3 Firmware tiene 8 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE8
Últimos 12 meses0
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2023-44374 | Alta (7.1) | 0.67% | — | 14 nov 2023 | A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.0), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2) (All versions < V8.0), SCALANCE M804PB… |
| CVE-2023-44373 | Crítica (9.4) | 1.3% | — | 14 nov 2023 | Affected devices do not properly sanitize an input field. This could allow an authenticated remote attacker with administrative privileges to inject code or spawn a system root shell. Follow-up of CVE-2022-36323. |
| CVE-2023-44322 | Media (5.9) | 0.88% | — | 14 nov 2023 | A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.0), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2) (All versions < V8.0), SCALANCE M804PB… |
| CVE-2023-44321 | Media (5.1) | 1.0% | — | 14 nov 2023 | Affected devices do not properly validate the length of inputs when performing certain configuration changes in the web interface allowing an authenticated attacker to cause a denial of service condition. The device… |
| CVE-2023-44320 | Media (4.3) | 0.64% | — | 14 nov 2023 | A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V7.2.2), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2) (All versions < V7.2.2), SCALANCE M804PB… |
| CVE-2023-44319 | Media (6.9) | 0.45% | — | 14 nov 2023 | A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.0), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2) (All versions < V8.0), SCALANCE M804PB… |
| CVE-2023-44318 | Media (6.9) | 0.69% | — | 14 nov 2023 | Affected devices use a hardcoded key to obfuscate the configuration backup that an administrator can export from the device. This could allow an authenticated attacker with administrative privileges or an attacker that… |
| CVE-2022-31765 | Alta (8.8) | 0.94% | — | 11 oct 2022 | Affected devices do not properly authorize the change password function of the web interface. This could allow low privileged users to escalate their privileges. |