Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-97251
HistoryDec 14, 2022 - 12:00 a.m.

Siemens SCALANCE M-800/S615 Series Information Disclosure Vulnerability

2022-12-1400:00:00
China National Vulnerability Database
www.cnvd.org.cn
18
siemens
scalance
m-800
s615
ruggedcom
rm1224
industrial routers
information disclosure vulnerability
tftp
buffer overflow
data leakage

AI Score

6.2

Confidence

Low

EPSS

0.001

Percentile

40.4%

The SCALANCE M-800, MUM-800 and S615 and the RUGGEDCOM RM1224 are industrial routers. An information disclosure vulnerability exists in the Siemens SCALANCE M-800/S615 series due to the affected devices not properly checking the TFTP block size. An attacker who is allowed to authenticate could exploit the vulnerability to read data from an uninitialized buffer that may contain previously allocated data.

AI Score

6.2

Confidence

Low

EPSS

0.001

Percentile

40.4%

Related for CNVD-2023-97251