CVE Database
/

CVE-2018-13801

Back to search

CVE-2018-13801

Published: Oct 10, 2018

Modified: Sep 16, 2024

PUBLISHED

Description

A vulnerability has been identified in ROX II (All versions < V2.12.1). An attacker with network access to port 22/tcp and valid low-privileged user credentials for the target device could perform a privilege escalation and gain root privileges. Successful exploitation requires user privileges of a low-privileged user but no user interaction. The vulnerability could allow an attacker to compromise confidentiality, integrity and availability of the system.

VendorProductVersions

Siemens AG

ROX II

affected
All versions < V2.12.1

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now