Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2015-1448

Overview

Vulnerability Score 10.0 10.0
CVE Id CVE-2015-1448
Last Modified 04 Feb 2015 12:27:01
Published 02 Feb 2015 10:59:08
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact COMPLETE COMPLETE
Availability Impact COMPLETE COMPLETE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2015-1448

Summary

The integrated management service on Siemens Ruggedcom WIN51xx devices with firmware before SS4.4.4624.35, WIN52xx devices with firmware before SS4.4.4624.35, WIN70xx devices with firmware before BS4.4.4621.32, and WIN72xx devices with firmware before BS4.4.4621.32 allows remote attackers to bypass authentication and perform administrative actions via unspecified vectors.

Vulnerable Systems

Operating System

  • Siemens Ruggedcom Firmware Bs4.4.4621.31

  • Siemens Ruggedcom Firmware Ss4.4.4624.34


References

CONFIRM - http://www.siemens.com/innovation/pool/de/forschungsfelder/siemens_security_advisory_ssa-753139.pdf


Last Updated: 27 May 2016 11:07:41