Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2018-4852

Опубликовано: 03 июл. 2018
Источник: nvd
CVSS3: 9.8
CVSS2: 7.5
EPSS Низкий

Описание

A vulnerability has been identified in SICLOCK TC100 (All versions) and SICLOCK TC400 (All versions). An attacker with network access to the device could potentially circumvent the authentication mechanism if he/she is able to obtain certain knowledge specific to the attacked device.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:siemens:siclock_tc400_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:siclock_tc400:-:*:*:*:*:*:*:*
Конфигурация 2

Одновременно

cpe:2.3:o:siemens:siclock_tc100_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:siclock_tc100:-:*:*:*:*:*:*:*

EPSS

Процентиль: 84%
0.02285
Низкий

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-288
CWE-287

Связанные уязвимости

CVSS3: 9.8
github
больше 3 лет назад

A vulnerability has been identified in SICLOCK TC100 (All versions) and SICLOCK TC400 (All versions). An attacker with network access to the device could potentially circumvent the authentication mechanism if he/she is able to obtain certain knowledge specific to the attacked device.

EPSS

Процентиль: 84%
0.02285
Низкий

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-288
CWE-287