Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-56474
HistoryAug 09, 2022 - 12:00 a.m.

Siemens SCALANCE product has an unspecified vulnerability (CNVD-2022-56474)

2022-08-0900:00:00
China National Vulnerability Database
www.cnvd.org.cn
12
siemens
scalance
vulnerability
remote access
wireless communication
industrial routers
security features
firewalls
vpns
industrial networks
ieee 802.11ac
ieee 802.11ax
switches
dom-based xss

0.001 Low

EPSS

Percentile

30.8%

SCALANCE M-800, MUM-800 and S615 and RUGGEDCOM RM1224 industrial routers are used for secure remote access to plants over mobile networks (e.g. GPRS or UMTS) with integrated security features of firewalls to prevent unauthorized access, and VPNs to protect data transmission.SCALANCE SC-600 devices (SC622-2C, SC632-2C, SC636-2C, SC642-2C, SC646-2C) are used to protect trusted industrial networks from untrusted network attacks. They allow filtering of incoming and outgoing network connections in different ways.SCALANCE W-1700 products are wireless communication devices based on the IEEE 802.11ac standard.SCALANCE W-700 products are wireless communication devices based on the IEEE 802.11ax standard.SCALANCE X switches are used to connect industrial components such as A security vulnerability exists in Siemens SCALANCE products due to a failure of the affected device to properly filter user-introduced data when presenting the web interface. This allows an authenticated remote attacker with administrative privileges to exploit the vulnerability to inject code and cause DOM-based XSS.

0.001 Low

EPSS

Percentile

30.8%

Related for CNVD-2022-56474