Lucene search

K
cveMitreCVE-2015-1449
HistoryFeb 02, 2015 - 3:59 p.m.

CVE-2015-1449

2015-02-0215:59:09
CWE-119
mitre
web.nvd.nist.gov
27
cve-2015-1449
buffer overflow
siemens
ruggedcom win
firmware
remote code execution
nvd

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

8.4

Confidence

Low

EPSS

0.033

Percentile

91.4%

Buffer overflow in the integrated web server on Siemens Ruggedcom WIN51xx devices with firmware before SS4.4.4624.35, WIN52xx devices with firmware before SS4.4.4624.35, WIN70xx devices with firmware before BS4.4.4621.32, and WIN72xx devices with firmware before BS4.4.4621.32 allows remote attackers to execute arbitrary code via unspecified vectors.

Affected configurations

Nvd
Node
siemensruggedcom_firmwareRangebs4.4.4621.31
AND
siemensruggedcom_win7000
OR
siemensruggedcom_win7200
Node
siemensruggedcom_firmwareRangess4.4.4624.34
AND
siemensruggedcom_win5100
OR
siemensruggedcom_win5200
VendorProductVersionCPE
siemensruggedcom_firmware*cpe:2.3:o:siemens:ruggedcom_firmware:*:*:*:*:*:*:*:*
siemensruggedcom_win7000*cpe:2.3:h:siemens:ruggedcom_win7000:*:*:*:*:*:*:*:*
siemensruggedcom_win7200*cpe:2.3:h:siemens:ruggedcom_win7200:*:*:*:*:*:*:*:*
siemensruggedcom_win5100*cpe:2.3:h:siemens:ruggedcom_win5100:*:*:*:*:*:*:*:*
siemensruggedcom_win5200*cpe:2.3:h:siemens:ruggedcom_win5200:*:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

8.4

Confidence

Low

EPSS

0.033

Percentile

91.4%

Related for CVE-2015-1449