CVE-2023-44317

Affected products do not properly validate the content of uploaded X509 certificates which could allow an attacker with administrative privileges to execute arbitrary code on the device.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:siemens:scalance_xb208_\(e\/ip\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb208_\(e\/ip\):-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:siemens:scalance_xb208_\(pn\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb208_\(pn\):-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:siemens:scalance_xb216_\(e\/ip\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb216_\(e\/ip\):-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:siemens:scalance_xb216_\(pn\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb216_\(pn\):-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:siemens:scalance_xc206-2_\(sc\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc206-2_\(sc\):-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:siemens:scalance_xc206-2_\(st\/bfoc\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc206-2_\(st\/bfoc\):-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:siemens:scalance_xc206-2g_poe_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc206-2g_poe:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:siemens:scalance_xc206-2g_poe_\(54_v_dc\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc206-2g_poe_\(54_v_dc\):-:*:*:*:*:*:*:*

Configuration 9 (hide)

AND
cpe:2.3:o:siemens:scalance_xc206-2g_poe_eec_\(54_v_dc\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc206-2g_poe_eec_\(54_v_dc\):-:*:*:*:*:*:*:*

Configuration 10 (hide)

AND
cpe:2.3:o:siemens:scalance_xc206-2sfp_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc206-2sfp:-:*:*:*:*:*:*:*

Configuration 11 (hide)

AND
cpe:2.3:o:siemens:scalance_xc206-2sfp_eec_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc206-2sfp_eec:-:*:*:*:*:*:*:*

Configuration 12 (hide)

AND
cpe:2.3:o:siemens:scalance_xc206-2sfp_g_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc206-2sfp_g:-:*:*:*:*:*:*:*

Configuration 13 (hide)

AND
cpe:2.3:o:siemens:scalance_xc206-2sfp_g_\(eip_def.\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc206-2sfp_g_\(eip_def.\):-:*:*:*:*:*:*:*

Configuration 14 (hide)

AND
cpe:2.3:o:siemens:scalance_xc206-2sfp_g_eec_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc206-2sfp_g_eec:-:*:*:*:*:*:*:*

Configuration 15 (hide)

AND
cpe:2.3:o:siemens:scalance_xc208_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc208:-:*:*:*:*:*:*:*

Configuration 16 (hide)

AND
cpe:2.3:o:siemens:scalance_xc208eec_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc208eec:-:*:*:*:*:*:*:*

Configuration 17 (hide)

AND
cpe:2.3:o:siemens:scalance_xc208g_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc208g:-:*:*:*:*:*:*:*

Configuration 18 (hide)

AND
cpe:2.3:o:siemens:scalance_xc208g_\(eip_def.\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc208g_\(eip_def.\):-:*:*:*:*:*:*:*

Configuration 19 (hide)

AND
cpe:2.3:o:siemens:scalance_xc208g_eec_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc208g_eec:-:*:*:*:*:*:*:*

Configuration 20 (hide)

AND
cpe:2.3:o:siemens:scalance_xc208g_poe_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc208g_poe:-:*:*:*:*:*:*:*

Configuration 21 (hide)

AND
cpe:2.3:o:siemens:scalance_xc208g_poe_\(54_v_dc\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc208g_poe_\(54_v_dc\):-:*:*:*:*:*:*:*

Configuration 22 (hide)

AND
cpe:2.3:o:siemens:scalance_xc216_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc216:-:*:*:*:*:*:*:*

Configuration 23 (hide)

AND
cpe:2.3:o:siemens:scalance_xc216-3g_poe_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc216-3g_poe:-:*:*:*:*:*:*:*

Configuration 24 (hide)

AND
cpe:2.3:o:siemens:scalance_xc216-3g_poe_\(54_v_dc\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc216-3g_poe_\(54_v_dc\):-:*:*:*:*:*:*:*

Configuration 25 (hide)

AND
cpe:2.3:o:siemens:scalance_xc216-4c_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc216-4c:-:*:*:*:*:*:*:*

Configuration 26 (hide)

AND
cpe:2.3:o:siemens:scalance_xc216-4c_g_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc216-4c_g:-:*:*:*:*:*:*:*

Configuration 27 (hide)

AND
cpe:2.3:o:siemens:scalance_xc216-4c_g_\(eip_def.\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc216-4c_g_\(eip_def.\):-:*:*:*:*:*:*:*

Configuration 28 (hide)

AND
cpe:2.3:o:siemens:scalance_xc216-4c_g_eec_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc216-4c_g_eec:-:*:*:*:*:*:*:*

Configuration 29 (hide)

AND
cpe:2.3:o:siemens:scalance_xc216eec_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc216eec:-:*:*:*:*:*:*:*

Configuration 30 (hide)

AND
cpe:2.3:o:siemens:scalance_xc224_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc224:-:*:*:*:*:*:*:*

Configuration 31 (hide)

AND
cpe:2.3:o:siemens:scalance_xc224-4c_g_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc224-4c_g:-:*:*:*:*:*:*:*

Configuration 32 (hide)

AND
cpe:2.3:o:siemens:scalance_xc224-4c_g_\(eip_def.\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc224-4c_g_\(eip_def.\):-:*:*:*:*:*:*:*

Configuration 33 (hide)

AND
cpe:2.3:o:siemens:scalance_xc224-4c_g_eec_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc224-4c_g_eec:-:*:*:*:*:*:*:*

Configuration 34 (hide)

AND
cpe:2.3:o:siemens:scalance_xf204_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xf204:-:*:*:*:*:*:*:*

Configuration 35 (hide)

AND
cpe:2.3:o:siemens:scalance_xf204_dna_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xf204_dna:-:*:*:*:*:*:*:*

Configuration 36 (hide)

AND
cpe:2.3:o:siemens:scalance_xf204-2ba_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xf204-2ba:-:*:*:*:*:*:*:*

Configuration 37 (hide)

AND
cpe:2.3:o:siemens:scalance_xf204-2ba_dna_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xf204-2ba_dna:-:*:*:*:*:*:*:*

Configuration 38 (hide)

AND
cpe:2.3:o:siemens:scalance_xp208_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xp208:-:*:*:*:*:*:*:*

Configuration 39 (hide)

AND
cpe:2.3:o:siemens:scalance_xp208_\(ethernet\/ip\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xp208_\(ethernet\/ip\):-:*:*:*:*:*:*:*

Configuration 40 (hide)

AND
cpe:2.3:o:siemens:scalance_xp208eec_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xp208eec:-:*:*:*:*:*:*:*

Configuration 41 (hide)

AND
cpe:2.3:o:siemens:scalance_xp208poe_eec_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xp208poe_eec:-:*:*:*:*:*:*:*

Configuration 42 (hide)

AND
cpe:2.3:o:siemens:scalance_xp216_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xp216:-:*:*:*:*:*:*:*

Configuration 43 (hide)

AND
cpe:2.3:o:siemens:scalance_xp216_\(ethernet\/ip\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xp216_\(ethernet\/ip\):-:*:*:*:*:*:*:*

Configuration 44 (hide)

AND
cpe:2.3:o:siemens:scalance_xp216eec_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xp216eec:-:*:*:*:*:*:*:*

Configuration 45 (hide)

AND
cpe:2.3:o:siemens:scalance_xp216poe_eec_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xp216poe_eec:-:*:*:*:*:*:*:*

Configuration 46 (hide)

AND
cpe:2.3:o:siemens:scalance_xr326-2c_poe_wg_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xr326-2c_poe_wg:-:*:*:*:*:*:*:*

Configuration 47 (hide)

AND
cpe:2.3:o:siemens:scalance_xr326-2c_poe_wg_\(without_ul\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xr326-2c_poe_wg_\(without_ul\):-:*:*:*:*:*:*:*

Configuration 48 (hide)

AND
cpe:2.3:o:siemens:siplus_net_scalance_xc206-2_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:siplus_net_scalance_xc206-2:-:*:*:*:*:*:*:*

Configuration 49 (hide)

AND
cpe:2.3:o:siemens:siplus_net_scalance_xc206-2sfp_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:siplus_net_scalance_xc206-2sfp:-:*:*:*:*:*:*:*

Configuration 50 (hide)

AND
cpe:2.3:o:siemens:siplus_net_scalance_xc208_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:siplus_net_scalance_xc208:-:*:*:*:*:*:*:*

Configuration 51 (hide)

AND
cpe:2.3:o:siemens:siplus_net_scalance_xc216-4c_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:siplus_net_scalance_xc216-4c:-:*:*:*:*:*:*:*

Configuration 52 (hide)

AND
cpe:2.3:o:siemens:scalance_xb205-3_\(sc\,_pn\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb205-3_\(sc\,_pn\):-:*:*:*:*:*:*:*

Configuration 53 (hide)

AND
cpe:2.3:o:siemens:scalance_xb205-3_\(st\,_e\/ip\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb205-3_\(st\,_e\/ip\):-:*:*:*:*:*:*:*

Configuration 54 (hide)

AND
cpe:2.3:o:siemens:scalance_xb205-3_\(st\,_pn\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb205-3_\(st\,_pn\):-:*:*:*:*:*:*:*

Configuration 55 (hide)

AND
cpe:2.3:o:siemens:scalance_xb205-3ld_\(sc\,_e\/ip\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb205-3ld_\(sc\,_e\/ip\):-:*:*:*:*:*:*:*

Configuration 56 (hide)

AND
cpe:2.3:o:siemens:scalance_xb205-3ld_\(sc\,_pn\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb205-3ld_\(sc\,_pn\):-:*:*:*:*:*:*:*

Configuration 57 (hide)

AND
cpe:2.3:o:siemens:scalance_xb213-3_\(sc\,_e\/ip\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb213-3_\(sc\,_e\/ip\):-:*:*:*:*:*:*:*

Configuration 58 (hide)

AND
cpe:2.3:o:siemens:scalance_xb213-3_\(sc\,_pn\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb213-3_\(sc\,_pn\):-:*:*:*:*:*:*:*

Configuration 59 (hide)

AND
cpe:2.3:o:siemens:scalance_xb213-3_\(st\,_e\/ip\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb213-3_\(st\,_e\/ip\):-:*:*:*:*:*:*:*

Configuration 60 (hide)

AND
cpe:2.3:o:siemens:scalance_xb213-3_\(st\,_pn\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb213-3_\(st\,_pn\):-:*:*:*:*:*:*:*

Configuration 61 (hide)

AND
cpe:2.3:o:siemens:scalance_xb213-3ld_\(sc\,_e\/ip\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb213-3ld_\(sc\,_e\/ip\):-:*:*:*:*:*:*:*

Configuration 62 (hide)

AND
cpe:2.3:o:siemens:scalance_xb213-3ld_\(sc\,_pn\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb213-3ld_\(sc\,_pn\):-:*:*:*:*:*:*:*

Configuration 63 (hide)

AND
cpe:2.3:o:siemens:scalance_xr324wg_\(24_x_fe\,_ac_230v\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xr324wg_\(24_x_fe\,_ac_230v\):-:*:*:*:*:*:*:*

Configuration 64 (hide)

AND
cpe:2.3:o:siemens:scalance_xr324wg_\(24_x_fe\,_dc_24v\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xr324wg_\(24_x_fe\,_dc_24v\):-:*:*:*:*:*:*:*

Configuration 65 (hide)

AND
cpe:2.3:o:siemens:scalance_xr328-4c_wg_\(24xfe\,_4xge\,_24v\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xr328-4c_wg_\(24xfe\,_4xge\,_24v\):-:*:*:*:*:*:*:*

Configuration 66 (hide)

AND
cpe:2.3:o:siemens:scalance_xr328-4c_wg_\(24xfe\,_4xge\,dc24v\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xr328-4c_wg_\(24xfe\,_4xge\,dc24v\):-:*:*:*:*:*:*:*

Configuration 67 (hide)

AND
cpe:2.3:o:siemens:scalance_xr328-4c_wg_\(24xfe\,4xge\,ac230v\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xr328-4c_wg_\(24xfe\,4xge\,ac230v\):-:*:*:*:*:*:*:*

Configuration 68 (hide)

AND
cpe:2.3:o:siemens:scalance_xr328-4c_wg_\(28xge\,_ac_230v\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xr328-4c_wg_\(28xge\,_ac_230v\):-:*:*:*:*:*:*:*

Configuration 69 (hide)

AND
cpe:2.3:o:siemens:scalance_xr328-4c_wg_\(28xge\,_dc_24v\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xr328-4c_wg_\(28xge\,_dc_24v\):-:*:*:*:*:*:*:*

History

13 Feb 2024, 09:15

Type Values Removed Values Added
Summary (en) A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU, RUGGEDCOM RM1224 LTE(4G) NAM, SCALANCE M804PB, SCALANCE M812-1 ADSL-Router (Annex A), SCALANCE M812-1 ADSL-Router (Annex B), SCALANCE M816-1 ADSL-Router (Annex A), SCALANCE M816-1 ADSL-Router (Annex B), SCALANCE M826-2 SHDSL-Router, SCALANCE M874-2, SCALANCE M874-3, SCALANCE M876-3 (EVDO), SCALANCE M876-3 (ROK), SCALANCE M876-4, SCALANCE M876-4 (EU), SCALANCE M876-4 (NAM), SCALANCE MUM853-1 (EU), SCALANCE MUM856-1 (EU), SCALANCE MUM856-1 (RoW), SCALANCE S615, SCALANCE S615 EEC, SCALANCE XB205-3 (SC, PN), SCALANCE XB205-3 (ST, E/IP), SCALANCE XB205-3 (ST, E/IP), SCALANCE XB205-3 (ST, PN), SCALANCE XB205-3LD (SC, E/IP), SCALANCE XB205-3LD (SC, PN), SCALANCE XB208 (E/IP), SCALANCE XB208 (PN), SCALANCE XB213-3 (SC, E/IP), SCALANCE XB213-3 (SC, PN), SCALANCE XB213-3 (ST, E/IP), SCALANCE XB213-3 (ST, PN), SCALANCE XB213-3LD (SC, E/IP), SCALANCE XB213-3LD (SC, PN), SCALANCE XB216 (E/IP), SCALANCE XB216 (PN), SCALANCE XC206-2 (SC), SCALANCE XC206-2 (ST/BFOC), SCALANCE XC206-2G PoE, SCALANCE XC206-2G PoE (54 V DC), SCALANCE XC206-2G PoE EEC (54 V DC), SCALANCE XC206-2SFP, SCALANCE XC206-2SFP EEC, SCALANCE XC206-2SFP G, SCALANCE XC206-2SFP G (EIP DEF.), SCALANCE XC206-2SFP G EEC, SCALANCE XC208, SCALANCE XC208EEC, SCALANCE XC208G, SCALANCE XC208G (EIP def.), SCALANCE XC208G EEC, SCALANCE XC208G PoE, SCALANCE XC208G PoE (54 V DC), SCALANCE XC216, SCALANCE XC216-3G PoE, SCALANCE XC216-3G PoE (54 V DC), SCALANCE XC216-4C, SCALANCE XC216-4C G, SCALANCE XC216-4C G (EIP Def.), SCALANCE XC216-4C G EEC, SCALANCE XC216EEC, SCALANCE XC224, SCALANCE XC224-4C G, SCALANCE XC224-4C G (EIP Def.), SCALANCE XC224-4C G EEC, SCALANCE XF204, SCALANCE XF204 DNA, SCALANCE XF204-2BA, SCALANCE XF204-2BA DNA, SCALANCE XP208, SCALANCE XP208 (Ethernet/IP), SCALANCE XP208EEC, SCALANCE XP208PoE EEC, SCALANCE XP216, SCALANCE XP216 (Ethernet/IP), SCALANCE XP216EEC, SCALANCE XP216POE EEC, SCALANCE XR324WG (24 x FE, AC 230V), SCALANCE XR324WG (24 X FE, DC 24V), SCALANCE XR326-2C PoE WG, SCALANCE XR326-2C PoE WG (without UL), SCALANCE XR328-4C WG (24XFE, 4XGE, 24V), SCALANCE XR328-4C WG (24xFE, 4xGE,DC24V), SCALANCE XR328-4C WG (24xFE,4xGE,AC230V), SCALANCE XR328-4C WG (24xFE,4xGE,AC230V), SCALANCE XR328-4C WG (28xGE, AC 230V), SCALANCE XR328-4C WG (28xGE, DC 24V), SIPLUS NET SCALANCE XC206-2, SIPLUS NET SCALANCE XC206-2SFP, SIPLUS NET SCALANCE XC208, SIPLUS NET SCALANCE XC216-4C. Affected products do not properly validate the content of uploaded X509 certificates which could allow an attacker with administrative privileges to execute arbitrary code on the device. (en) Affected products do not properly validate the content of uploaded X509 certificates which could allow an attacker with administrative privileges to execute arbitrary code on the device.
References
  • () https://cert-portal.siemens.com/productcert/html/ssa-068047.html -
  • () https://cert-portal.siemens.com/productcert/html/ssa-602936.html -
  • () https://cert-portal.siemens.com/productcert/html/ssa-699386.html -

12 Dec 2023, 12:15

Type Values Removed Values Added
Summary (en) A vulnerability has been identified in SCALANCE XB205-3 (SC, PN) (All versions < V4.5), SCALANCE XB205-3 (ST, E/IP) (All versions < V4.5), SCALANCE XB205-3 (ST, E/IP) (All versions < V4.5), SCALANCE XB205-3 (ST, PN) (All versions < V4.5), SCALANCE XB205-3LD (SC, E/IP) (All versions < V4.5), SCALANCE XB205-3LD (SC, PN) (All versions < V4.5), SCALANCE XB208 (E/IP) (All versions < V4.5), SCALANCE XB208 (PN) (All versions < V4.5), SCALANCE XB213-3 (SC, E/IP) (All versions < V4.5), SCALANCE XB213-3 (SC, PN) (All versions < V4.5), SCALANCE XB213-3 (ST, E/IP) (All versions < V4.5), SCALANCE XB213-3 (ST, PN) (All versions < V4.5), SCALANCE XB213-3LD (SC, E/IP) (All versions < V4.5), SCALANCE XB213-3LD (SC, PN) (All versions < V4.5), SCALANCE XB216 (E/IP) (All versions < V4.5), SCALANCE XB216 (PN) (All versions < V4.5), SCALANCE XC206-2 (SC) (All versions < V4.5), SCALANCE XC206-2 (ST/BFOC) (All versions < V4.5), SCALANCE XC206-2G PoE (All versions < V4.5), SCALANCE XC206-2G PoE (54 V DC) (All versions < V4.5), SCALANCE XC206-2G PoE EEC (54 V DC) (All versions < V4.5), SCALANCE XC206-2SFP (All versions < V4.5), SCALANCE XC206-2SFP EEC (All versions < V4.5), SCALANCE XC206-2SFP G (All versions < V4.5), SCALANCE XC206-2SFP G (EIP DEF.) (All versions < V4.5), SCALANCE XC206-2SFP G EEC (All versions < V4.5), SCALANCE XC208 (All versions < V4.5), SCALANCE XC208EEC (All versions < V4.5), SCALANCE XC208G (All versions < V4.5), SCALANCE XC208G (EIP def.) (All versions < V4.5), SCALANCE XC208G EEC (All versions < V4.5), SCALANCE XC208G PoE (All versions < V4.5), SCALANCE XC208G PoE (54 V DC) (All versions < V4.5), SCALANCE XC216 (All versions < V4.5), SCALANCE XC216-3G PoE (All versions < V4.5), SCALANCE XC216-3G PoE (54 V DC) (All versions < V4.5), SCALANCE XC216-4C (All versions < V4.5), SCALANCE XC216-4C G (All versions < V4.5), SCALANCE XC216-4C G (EIP Def.) (All versions < V4.5), SCALANCE XC216-4C G EEC (All versions < V4.5), SCALANCE XC216EEC (All versions < V4.5), SCALANCE XC224 (All versions < V4.5), SCALANCE XC224-4C G (All versions < V4.5), SCALANCE XC224-4C G (EIP Def.) (All versions < V4.5), SCALANCE XC224-4C G EEC (All versions < V4.5), SCALANCE XF204 (All versions < V4.5), SCALANCE XF204 DNA (All versions < V4.5), SCALANCE XF204-2BA (All versions < V4.5), SCALANCE XF204-2BA DNA (All versions < V4.5), SCALANCE XP208 (All versions < V4.5), SCALANCE XP208 (Ethernet/IP) (All versions < V4.5), SCALANCE XP208EEC (All versions < V4.5), SCALANCE XP208PoE EEC (All versions < V4.5), SCALANCE XP216 (All versions < V4.5), SCALANCE XP216 (Ethernet/IP) (All versions < V4.5), SCALANCE XP216EEC (All versions < V4.5), SCALANCE XP216POE EEC (All versions < V4.5), SCALANCE XR324WG (24 x FE, AC 230V) (All versions < V4.5), SCALANCE XR324WG (24 X FE, DC 24V) (All versions < V4.5), SCALANCE XR326-2C PoE WG (All versions < V4.5), SCALANCE XR326-2C PoE WG (without UL) (All versions < V4.5), SCALANCE XR328-4C WG (24XFE, 4XGE, 24V) (All versions < V4.5), SCALANCE XR328-4C WG (24xFE, 4xGE,DC24V) (All versions < V4.5), SCALANCE XR328-4C WG (24xFE,4xGE,AC230V) (All versions < V4.5), SCALANCE XR328-4C WG (24xFE,4xGE,AC230V) (All versions < V4.5), SCALANCE XR328-4C WG (28xGE, AC 230V) (All versions < V4.5), SCALANCE XR328-4C WG (28xGE, DC 24V) (All versions < V4.5), SIPLUS NET SCALANCE XC206-2 (All versions < V4.5), SIPLUS NET SCALANCE XC206-2SFP (All versions < V4.5), SIPLUS NET SCALANCE XC208 (All versions < V4.5), SIPLUS NET SCALANCE XC216-4C (All versions < V4.5). Affected products do not properly validate the content of uploaded X509 certificates which could allow an attacker with administrative privileges to execute arbitrary code on the device. (en) A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU, RUGGEDCOM RM1224 LTE(4G) NAM, SCALANCE M804PB, SCALANCE M812-1 ADSL-Router (Annex A), SCALANCE M812-1 ADSL-Router (Annex B), SCALANCE M816-1 ADSL-Router (Annex A), SCALANCE M816-1 ADSL-Router (Annex B), SCALANCE M826-2 SHDSL-Router, SCALANCE M874-2, SCALANCE M874-3, SCALANCE M876-3 (EVDO), SCALANCE M876-3 (ROK), SCALANCE M876-4, SCALANCE M876-4 (EU), SCALANCE M876-4 (NAM), SCALANCE MUM853-1 (EU), SCALANCE MUM856-1 (EU), SCALANCE MUM856-1 (RoW), SCALANCE S615, SCALANCE S615 EEC, SCALANCE XB205-3 (SC, PN), SCALANCE XB205-3 (ST, E/IP), SCALANCE XB205-3 (ST, E/IP), SCALANCE XB205-3 (ST, PN), SCALANCE XB205-3LD (SC, E/IP), SCALANCE XB205-3LD (SC, PN), SCALANCE XB208 (E/IP), SCALANCE XB208 (PN), SCALANCE XB213-3 (SC, E/IP), SCALANCE XB213-3 (SC, PN), SCALANCE XB213-3 (ST, E/IP), SCALANCE XB213-3 (ST, PN), SCALANCE XB213-3LD (SC, E/IP), SCALANCE XB213-3LD (SC, PN), SCALANCE XB216 (E/IP), SCALANCE XB216 (PN), SCALANCE XC206-2 (SC), SCALANCE XC206-2 (ST/BFOC), SCALANCE XC206-2G PoE, SCALANCE XC206-2G PoE (54 V DC), SCALANCE XC206-2G PoE EEC (54 V DC), SCALANCE XC206-2SFP, SCALANCE XC206-2SFP EEC, SCALANCE XC206-2SFP G, SCALANCE XC206-2SFP G (EIP DEF.), SCALANCE XC206-2SFP G EEC, SCALANCE XC208, SCALANCE XC208EEC, SCALANCE XC208G, SCALANCE XC208G (EIP def.), SCALANCE XC208G EEC, SCALANCE XC208G PoE, SCALANCE XC208G PoE (54 V DC), SCALANCE XC216, SCALANCE XC216-3G PoE, SCALANCE XC216-3G PoE (54 V DC), SCALANCE XC216-4C, SCALANCE XC216-4C G, SCALANCE XC216-4C G (EIP Def.), SCALANCE XC216-4C G EEC, SCALANCE XC216EEC, SCALANCE XC224, SCALANCE XC224-4C G, SCALANCE XC224-4C G (EIP Def.), SCALANCE XC224-4C G EEC, SCALANCE XF204, SCALANCE XF204 DNA, SCALANCE XF204-2BA, SCALANCE XF204-2BA DNA, SCALANCE XP208, SCALANCE XP208 (Ethernet/IP), SCALANCE XP208EEC, SCALANCE XP208PoE EEC, SCALANCE XP216, SCALANCE XP216 (Ethernet/IP), SCALANCE XP216EEC, SCALANCE XP216POE EEC, SCALANCE XR324WG (24 x FE, AC 230V), SCALANCE XR324WG (24 X FE, DC 24V), SCALANCE XR326-2C PoE WG, SCALANCE XR326-2C PoE WG (without UL), SCALANCE XR328-4C WG (24XFE, 4XGE, 24V), SCALANCE XR328-4C WG (24xFE, 4xGE,DC24V), SCALANCE XR328-4C WG (24xFE,4xGE,AC230V), SCALANCE XR328-4C WG (24xFE,4xGE,AC230V), SCALANCE XR328-4C WG (28xGE, AC 230V), SCALANCE XR328-4C WG (28xGE, DC 24V), SIPLUS NET SCALANCE XC206-2, SIPLUS NET SCALANCE XC206-2SFP, SIPLUS NET SCALANCE XC208, SIPLUS NET SCALANCE XC216-4C. Affected products do not properly validate the content of uploaded X509 certificates which could allow an attacker with administrative privileges to execute arbitrary code on the device.
References
  • () https://cert-portal.siemens.com/productcert/pdf/ssa-068047.pdf -

21 Nov 2023, 19:00

Type Values Removed Values Added
CPE cpe:2.3:h:siemens:scalance_xb213-3_\(sc\,_pn\):-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xf204-2ba_dna_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb213-3_\(st\,_pn\):-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc208g_\(eip_def.\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc206-2g_poe_eec_\(54_v_dc\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc208g_eec:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc206-2sfp_eec:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xb208_\(pn\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xf204-2ba_dna:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xp216_\(ethernet\/ip\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:siplus_net_scalance_xc208:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb208_\(pn\):-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc206-2g_poe_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc224-4c_g_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xp208poe_eec:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc224-4c_g_eec:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xp208eec_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xf204_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xp208_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb208_\(e\/ip\):-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xb216_\(pn\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc216-3g_poe_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xr328-4c_wg_\(24xfe\,_4xge\,_24v\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc216-4c_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc206-2sfp_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb216_\(e\/ip\):-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xr324wg_\(24_x_fe\,_ac_230v\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xb213-3ld_\(sc\,_pn\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc216eec_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xr326-2c_poe_wg_\(without_ul\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xb213-3_\(st\,_e\/ip\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc206-2_\(sc\):-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xr324wg_\(24_x_fe\,_dc_24v\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc208g_poe_\(54_v_dc\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xp208:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xb205-3_\(st\,_e\/ip\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xr328-4c_wg_\(24xfe\,_4xge\,dc24v\):-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xf204-2ba_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xr326-2c_poe_wg_\(without_ul\):-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc208g_eec_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc224-4c_g_\(eip_def.\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:siplus_net_scalance_xc206-2:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xb205-3ld_\(sc\,_pn\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xb216_\(e\/ip\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb205-3_\(sc\,_pn\):-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xb213-3_\(st\,_pn\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc206-2sfp_g_eec_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb213-3_\(st\,_e\/ip\):-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xp208poe_eec_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc206-2sfp:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc206-2g_poe_\(54_v_dc\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc216_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc206-2_\(st\/bfoc\):-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xr328-4c_wg_\(24xfe\,4xge\,ac230v\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xb213-3ld_\(sc\,_e\/ip\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xr326-2c_poe_wg:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb213-3ld_\(sc\,_pn\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc216-3g_poe_\(54_v_dc\):-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xr328-4c_wg_\(24xfe\,_4xge\,dc24v\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc224_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc206-2_\(st\/bfoc\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xb205-3ld_\(sc\,_e\/ip\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xf204_dna_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc206-2g_poe_eec_\(54_v_dc\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc208:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:siplus_net_scalance_xc216-4c_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xb213-3_\(sc\,_e\/ip\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc206-2sfp_g:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb205-3ld_\(sc\,_e\/ip\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xp216:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:siplus_net_scalance_xc216-4c:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc208g_\(eip_def.\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc206-2g_poe_\(54_v_dc\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc224-4c_g_\(eip_def.\):-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc206-2sfp_g_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xp216_\(ethernet\/ip\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc216-4c_g_\(eip_def.\):-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc206-2sfp_eec_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xp216_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc216-4c_g_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xp216poe_eec:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc208g_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xb208_\(e\/ip\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb213-3_\(sc\,_e\/ip\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xp208_\(ethernet\/ip\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc206-2sfp_g_eec:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:siplus_net_scalance_xc206-2sfp_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc216-4c_g_eec_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xr324wg_\(24_x_fe\,_ac_230v\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xp208eec:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc206-2_\(sc\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc208g:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc224-4c_g_eec_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc208eec_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc224-4c_g:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xp216poe_eec_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc216-4c_g_\(eip_def.\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb205-3_\(st\,_pn\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc208eec:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc216eec:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xb205-3_\(sc\,_pn\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xr328-4c_wg_\(28xge\,_ac_230v\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xr328-4c_wg_\(28xge\,_dc_24v\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc206-2g_poe:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xf204:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xb205-3_\(st\,_pn\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc208g_poe_\(54_v_dc\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc216:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xr328-4c_wg_\(28xge\,_ac_230v\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb205-3ld_\(sc\,_pn\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xr328-4c_wg_\(24xfe\,_4xge\,_24v\):-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xb213-3_\(sc\,_pn\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc216-3g_poe:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xf204-2ba:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb213-3ld_\(sc\,_e\/ip\):-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc208g_poe_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xf204_dna:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc216-4c_g:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xp216eec:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc208_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:siplus_net_scalance_xc208_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc208g_poe:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xr326-2c_poe_wg_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xr328-4c_wg_\(28xge\,_dc_24v\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb216_\(pn\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xr328-4c_wg_\(24xfe\,4xge\,ac230v\):-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:siplus_net_scalance_xc206-2_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc216-4c:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc216-4c_g_eec:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc206-2sfp_g_\(eip_def.\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xp216eec_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xc216-3g_poe_\(54_v_dc\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:siplus_net_scalance_xc206-2sfp:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_xp208_\(ethernet\/ip\)_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xr324wg_\(24_x_fe\,_dc_24v\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xb205-3_\(st\,_e\/ip\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc206-2sfp_g_\(eip_def.\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xc224:-:*:*:*:*:*:*:*
First Time Siemens scalance Xr324wg \(24 X Fe\, Dc 24v\) Firmware
Siemens scalance Xb205-3ld \(sc\, E\/ip\) Firmware
Siemens scalance Xp208 \(ethernet\/ip\) Firmware
Siemens scalance Xf204 Dna Firmware
Siemens scalance Xc216-4c
Siemens scalance Xc206-2sfp G \(eip Def.\) Firmware
Siemens scalance Xc208g
Siemens scalance Xp216eec Firmware
Siemens scalance Xf204
Siemens scalance Xp208eec
Siemens scalance Xc208
Siemens scalance Xc216-3g Poe Firmware
Siemens scalance Xc216eec
Siemens scalance Xc224-4c G Firmware
Siemens scalance Xb213-3 \(st\, E\/ip\)
Siemens scalance Xc206-2g Poe Firmware
Siemens scalance Xr328-4c Wg \(28xge\, Ac 230v\)
Siemens scalance Xb208 \(e\/ip\) Firmware
Siemens scalance Xp216
Siemens scalance Xf204-2ba Dna
Siemens scalance Xb216 \(e\/ip\)
Siemens scalance Xc216-3g Poe \(54 V Dc\) Firmware
Siemens siplus Net Scalance Xc208
Siemens scalance Xc208g Poe \(54 V Dc\)
Siemens scalance Xr328-4c Wg \(24xfe\, 4xge\,dc24v\)
Siemens scalance Xb205-3ld \(sc\, E\/ip\)
Siemens scalance Xc224-4c G
Siemens scalance Xr326-2c Poe Wg Firmware
Siemens siplus Net Scalance Xc208 Firmware
Siemens scalance Xr328-4c Wg \(24xfe\,4xge\,ac230v\) Firmware
Siemens scalance Xc208eec
Siemens scalance Xc224-4c G Eec Firmware
Siemens scalance Xc216-4c G Firmware
Siemens scalance Xc208g \(eip Def.\) Firmware
Siemens scalance Xc206-2sfp G Eec Firmware
Siemens scalance Xr324wg \(24 X Fe\, Ac 230v\) Firmware
Siemens scalance Xr328-4c Wg \(24xfe\, 4xge\,dc24v\) Firmware
Siemens scalance Xr326-2c Poe Wg \(without Ul\) Firmware
Siemens scalance Xc206-2 \(st\/bfoc\)
Siemens scalance Xc208g Firmware
Siemens scalance Xc208g Poe \(54 V Dc\) Firmware
Siemens scalance Xc206-2sfp Eec Firmware
Siemens scalance Xb205-3 \(st\, E\/ip\)
Siemens scalance Xp208 \(ethernet\/ip\)
Siemens scalance Xb213-3ld \(sc\, Pn\) Firmware
Siemens scalance Xc208eec Firmware
Siemens scalance Xb213-3 \(sc\, Pn\)
Siemens scalance Xb213-3 \(sc\, Pn\) Firmware
Siemens scalance Xc206-2 \(st\/bfoc\) Firmware
Siemens siplus Net Scalance Xc216-4c Firmware
Siemens scalance Xf204 Firmware
Siemens scalance Xb205-3ld \(sc\, Pn\)
Siemens scalance Xp216poe Eec Firmware
Siemens scalance Xc206-2sfp G
Siemens siplus Net Scalance Xc206-2sfp Firmware
Siemens scalance Xc206-2sfp Firmware
Siemens siplus Net Scalance Xc206-2
Siemens scalance Xb213-3 \(st\, E\/ip\) Firmware
Siemens scalance Xc206-2sfp G \(eip Def.\)
Siemens scalance Xc216-4c G \(eip Def.\) Firmware
Siemens scalance Xb205-3 \(st\, E\/ip\) Firmware
Siemens scalance Xc206-2g Poe \(54 V Dc\) Firmware
Siemens scalance Xc206-2sfp Eec
Siemens scalance Xb208 \(pn\)
Siemens scalance Xr328-4c Wg \(28xge\, Dc 24v\) Firmware
Siemens scalance Xb213-3 \(st\, Pn\)
Siemens scalance Xc206-2g Poe \(54 V Dc\)
Siemens scalance Xf204-2ba
Siemens scalance Xp208
Siemens scalance Xc208g Eec
Siemens scalance Xc206-2 \(sc\) Firmware
Siemens scalance Xc224
Siemens scalance Xb205-3 \(sc\, Pn\) Firmware
Siemens scalance Xp216eec
Siemens scalance Xp208poe Eec
Siemens siplus Net Scalance Xc216-4c
Siemens scalance Xr324wg \(24 X Fe\, Dc 24v\)
Siemens scalance Xb208 \(pn\) Firmware
Siemens scalance Xr324wg \(24 X Fe\, Ac 230v\)
Siemens scalance Xc216-4c Firmware
Siemens scalance Xb216 \(e\/ip\) Firmware
Siemens scalance Xc206-2g Poe Eec \(54 V Dc\)
Siemens scalance Xc216-4c G
Siemens scalance Xc208g Poe
Siemens scalance Xb213-3ld \(sc\, E\/ip\) Firmware
Siemens scalance Xf204-2ba Dna Firmware
Siemens siplus Net Scalance Xc206-2 Firmware
Siemens scalance Xp208poe Eec Firmware
Siemens scalance Xb213-3 \(sc\, E\/ip\) Firmware
Siemens scalance Xc224 Firmware
Siemens scalance Xc216-4c G Eec Firmware
Siemens scalance Xr328-4c Wg \(24xfe\,4xge\,ac230v\)
Siemens scalance Xb213-3 \(st\, Pn\) Firmware
Siemens scalance Xc206-2g Poe Eec \(54 V Dc\) Firmware
Siemens
Siemens scalance Xc208 Firmware
Siemens scalance Xc216eec Firmware
Siemens scalance Xc224-4c G \(eip Def.\) Firmware
Siemens scalance Xc206-2sfp G Eec
Siemens scalance Xc208g \(eip Def.\)
Siemens scalance Xc216-4c G \(eip Def.\)
Siemens scalance Xb205-3 \(st\, Pn\) Firmware
Siemens scalance Xc208g Poe Firmware
Siemens scalance Xp216 \(ethernet\/ip\) Firmware
Siemens scalance Xb205-3 \(sc\, Pn\)
Siemens scalance Xp216poe Eec
Siemens scalance Xp216 \(ethernet\/ip\)
Siemens scalance Xc216-4c G Eec
Siemens scalance Xr328-4c Wg \(28xge\, Dc 24v\)
Siemens scalance Xb205-3ld \(sc\, Pn\) Firmware
Siemens scalance Xc206-2sfp
Siemens scalance Xb213-3ld \(sc\, Pn\)
Siemens scalance Xf204 Dna
Siemens scalance Xc208g Eec Firmware
Siemens scalance Xr326-2c Poe Wg \(without Ul\)
Siemens scalance Xr328-4c Wg \(28xge\, Ac 230v\) Firmware
Siemens scalance Xc216-3g Poe
Siemens scalance Xb216 \(pn\)
Siemens scalance Xc216 Firmware
Siemens scalance Xb205-3 \(st\, Pn\)
Siemens siplus Net Scalance Xc206-2sfp
Siemens scalance Xb213-3ld \(sc\, E\/ip\)
Siemens scalance Xp208 Firmware
Siemens scalance Xc216-3g Poe \(54 V Dc\)
Siemens scalance Xp216 Firmware
Siemens scalance Xp208eec Firmware
Siemens scalance Xc224-4c G Eec
Siemens scalance Xf204-2ba Firmware
Siemens scalance Xc216
Siemens scalance Xb208 \(e\/ip\)
Siemens scalance Xb213-3 \(sc\, E\/ip\)
Siemens scalance Xb216 \(pn\) Firmware
Siemens scalance Xr326-2c Poe Wg
Siemens scalance Xr328-4c Wg \(24xfe\, 4xge\, 24v\) Firmware
Siemens scalance Xr328-4c Wg \(24xfe\, 4xge\, 24v\)
Siemens scalance Xc206-2sfp G Firmware
Siemens scalance Xc206-2 \(sc\)
Siemens scalance Xc224-4c G \(eip Def.\)
Siemens scalance Xc206-2g Poe
References () https://cert-portal.siemens.com/productcert/pdf/ssa-699386.pdf - () https://cert-portal.siemens.com/productcert/pdf/ssa-699386.pdf - Vendor Advisory

14 Nov 2023, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-11-14 11:15

Updated : 2024-02-13 09:15


NVD link : CVE-2023-44317

Mitre link : CVE-2023-44317

CVE.ORG link : CVE-2023-44317


JSON object : View

Products Affected

siemens

  • scalance_xr324wg_\(24_x_fe\,_dc_24v\)_firmware
  • scalance_xc216-4c_g_\(eip_def.\)_firmware
  • siplus_net_scalance_xc206-2
  • scalance_xb216_\(e\/ip\)_firmware
  • scalance_xc208g
  • scalance_xc224-4c_g_eec
  • scalance_xc208
  • scalance_xc216eec_firmware
  • scalance_xc206-2sfp_firmware
  • scalance_xc216-4c
  • scalance_xr328-4c_wg_\(24xfe\,_4xge\,_24v\)_firmware
  • scalance_xr324wg_\(24_x_fe\,_dc_24v\)
  • scalance_xb213-3ld_\(sc\,_e\/ip\)
  • scalance_xp216poe_eec
  • scalance_xc216-3g_poe_firmware
  • scalance_xc208eec_firmware
  • scalance_xb208_\(e\/ip\)_firmware
  • scalance_xb205-3_\(st\,_pn\)
  • scalance_xc206-2g_poe
  • scalance_xr328-4c_wg_\(24xfe\,_4xge\,dc24v\)_firmware
  • scalance_xf204-2ba_dna
  • scalance_xb205-3_\(sc\,_pn\)_firmware
  • scalance_xc216-3g_poe_\(54_v_dc\)
  • scalance_xc206-2sfp
  • scalance_xc216-4c_g_firmware
  • scalance_xc208g_poe
  • scalance_xb213-3_\(st\,_e\/ip\)
  • scalance_xp208eec_firmware
  • scalance_xr324wg_\(24_x_fe\,_ac_230v\)
  • scalance_xp208_\(ethernet\/ip\)
  • siplus_net_scalance_xc206-2sfp_firmware
  • scalance_xb213-3_\(sc\,_e\/ip\)_firmware
  • siplus_net_scalance_xc206-2_firmware
  • scalance_xc206-2g_poe_firmware
  • scalance_xc224_firmware
  • scalance_xp216eec_firmware
  • scalance_xc216-4c_g_\(eip_def.\)
  • scalance_xr328-4c_wg_\(28xge\,_dc_24v\)
  • scalance_xp216poe_eec_firmware
  • scalance_xb213-3_\(st\,_pn\)_firmware
  • scalance_xb213-3_\(sc\,_pn\)
  • scalance_xb213-3ld_\(sc\,_e\/ip\)_firmware
  • scalance_xc216-4c_firmware
  • scalance_xb213-3_\(sc\,_e\/ip\)
  • scalance_xp208eec
  • scalance_xp216_\(ethernet\/ip\)_firmware
  • scalance_xb208_\(pn\)_firmware
  • scalance_xp216_firmware
  • scalance_xc206-2g_poe_\(54_v_dc\)
  • scalance_xc216
  • scalance_xr326-2c_poe_wg_\(without_ul\)_firmware
  • scalance_xb208_\(pn\)
  • scalance_xb205-3ld_\(sc\,_pn\)_firmware
  • scalance_xb216_\(e\/ip\)
  • siplus_net_scalance_xc216-4c
  • scalance_xc216-4c_g_eec
  • scalance_xc224-4c_g_firmware
  • scalance_xc216_firmware
  • scalance_xc216-4c_g_eec_firmware
  • scalance_xc208g_poe_\(54_v_dc\)
  • siplus_net_scalance_xc208_firmware
  • scalance_xb213-3_\(st\,_e\/ip\)_firmware
  • scalance_xr328-4c_wg_\(24xfe\,_4xge\,dc24v\)
  • scalance_xc216eec
  • scalance_xc206-2sfp_g_eec_firmware
  • scalance_xc206-2sfp_g_\(eip_def.\)
  • scalance_xc208g_\(eip_def.\)
  • scalance_xr328-4c_wg_\(24xfe\,4xge\,ac230v\)_firmware
  • scalance_xp216eec
  • scalance_xf204_dna
  • scalance_xc216-3g_poe
  • scalance_xc206-2_\(sc\)_firmware
  • scalance_xc224-4c_g_\(eip_def.\)
  • scalance_xf204-2ba_firmware
  • scalance_xp208poe_eec_firmware
  • scalance_xr324wg_\(24_x_fe\,_ac_230v\)_firmware
  • scalance_xc206-2_\(st\/bfoc\)_firmware
  • scalance_xr328-4c_wg_\(28xge\,_ac_230v\)_firmware
  • scalance_xr328-4c_wg_\(28xge\,_dc_24v\)_firmware
  • siplus_net_scalance_xc216-4c_firmware
  • scalance_xp208
  • scalance_xc208g_eec_firmware
  • scalance_xp208poe_eec
  • scalance_xr326-2c_poe_wg
  • scalance_xr326-2c_poe_wg_firmware
  • scalance_xb205-3_\(st\,_e\/ip\)_firmware
  • scalance_xc208g_\(eip_def.\)_firmware
  • scalance_xr328-4c_wg_\(28xge\,_ac_230v\)
  • scalance_xc206-2_\(sc\)
  • scalance_xr328-4c_wg_\(24xfe\,_4xge\,_24v\)
  • scalance_xf204
  • scalance_xb213-3_\(sc\,_pn\)_firmware
  • scalance_xp216
  • scalance_xc206-2sfp_eec_firmware
  • scalance_xc206-2g_poe_\(54_v_dc\)_firmware
  • scalance_xc208g_firmware
  • scalance_xf204_firmware
  • siplus_net_scalance_xc208
  • scalance_xb216_\(pn\)_firmware
  • scalance_xf204-2ba_dna_firmware
  • scalance_xb205-3ld_\(sc\,_pn\)
  • scalance_xf204_dna_firmware
  • scalance_xp216_\(ethernet\/ip\)
  • scalance_xb213-3ld_\(sc\,_pn\)_firmware
  • scalance_xc208_firmware
  • scalance_xc206-2sfp_g_eec
  • scalance_xp208_firmware
  • scalance_xb205-3ld_\(sc\,_e\/ip\)
  • scalance_xc208eec
  • scalance_xc206-2sfp_g_firmware
  • scalance_xc208g_eec
  • scalance_xb205-3ld_\(sc\,_e\/ip\)_firmware
  • scalance_xc224-4c_g
  • scalance_xb216_\(pn\)
  • scalance_xc206-2sfp_eec
  • scalance_xb208_\(e\/ip\)
  • scalance_xc224
  • scalance_xr328-4c_wg_\(24xfe\,4xge\,ac230v\)
  • scalance_xc206-2sfp_g
  • scalance_xf204-2ba
  • scalance_xb205-3_\(st\,_pn\)_firmware
  • scalance_xb205-3_\(st\,_e\/ip\)
  • scalance_xc224-4c_g_eec_firmware
  • scalance_xc216-4c_g
  • scalance_xc206-2g_poe_eec_\(54_v_dc\)
  • scalance_xc206-2g_poe_eec_\(54_v_dc\)_firmware
  • scalance_xb213-3ld_\(sc\,_pn\)
  • scalance_xc206-2_\(st\/bfoc\)
  • scalance_xp208_\(ethernet\/ip\)_firmware
  • scalance_xc216-3g_poe_\(54_v_dc\)_firmware
  • scalance_xr326-2c_poe_wg_\(without_ul\)
  • scalance_xc206-2sfp_g_\(eip_def.\)_firmware
  • scalance_xb205-3_\(sc\,_pn\)
  • scalance_xc208g_poe_firmware
  • scalance_xc208g_poe_\(54_v_dc\)_firmware
  • siplus_net_scalance_xc206-2sfp
  • scalance_xc224-4c_g_\(eip_def.\)_firmware
  • scalance_xb213-3_\(st\,_pn\)
CWE
CWE-349

Acceptance of Extraneous Untrusted Data With Trusted Data