Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xww6-q5p3-h6pp

Опубликовано: 13 мая 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.4
CVSS3: 7.1

Описание

A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions with SINEMA Remote Connect Edge Client installed). Affected devices are vulnerable to an authentication bypass. This could allow a non-privileged local attacker to bypass the authentication of the SINEMA Remote Connect Edge Client, and to read and modify the configuration parameters.

A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions with SINEMA Remote Connect Edge Client installed). Affected devices are vulnerable to an authentication bypass. This could allow a non-privileged local attacker to bypass the authentication of the SINEMA Remote Connect Edge Client, and to read and modify the configuration parameters.

EPSS

Процентиль: 4%
0.00023
Низкий

8.4 High

CVSS4

7.1 High

CVSS3

Дефекты

CWE-288

Связанные уязвимости

CVSS3: 7.1
nvd
3 месяца назад

A vulnerability has been identified in SCALANCE LPE9403 (6GK5998-3GS00-2AC2) (All versions with SINEMA Remote Connect Edge Client installed). Affected devices are vulnerable to an authentication bypass. This could allow a non-privileged local attacker to bypass the authentication of the SINEMA Remote Connect Edge Client, and to read and modify the configuration parameters.

CVSS3: 7.1
fstec
3 месяца назад

Уязвимость клиента удаленного подключения SINEMA Remote Connect Edge Client микропрограммного обеспечения промышленных коммутаторов Siemens Scalance LPE9403, позволяющая нарушителю обойти процедуру аутентификации и получить доступ на чтение и изменения параметров конфигурации

EPSS

Процентиль: 4%
0.00023
Низкий

8.4 High

CVSS4

7.1 High

CVSS3

Дефекты

CWE-288