CVE Database
/

CVE-2023-44319

Back to search

CVE-2023-44319

Published: Nov 14, 2023

Modified: Jan 14, 2025

PUBLISHED

CVSS v3.1

4.9

MEDIUM

Description

A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.0), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2) (All versions < V8.0), SCALANCE M804PB (6GK5804-0AP00-2AA2) (All versions < V8.0), SCALANCE M812-1 ADSL-Router (6GK5812-1AA00-2AA2) (All versions < V8.0), SCALANCE M812-1 ADSL-Router (6GK5812-1BA00-2AA2) (All versions < V8.0), SCALANCE M816-1 ADSL-Router (6GK5816-1AA00-2AA2) (All versions < V8.0), SCALANCE M816-1 ADSL-Router (6GK5816-1BA00-2AA2) (All versions < V8.0), SCALANCE M826-2 SHDSL-Router (6GK5826-2AB00-2AB2) (All versions < V8.0), SCALANCE M874-2 (6GK5874-2AA00-2AA2) (All versions < V8.0), SCALANCE M874-3 (6GK5874-3AA00-2AA2) (All versions < V8.0), SCALANCE M876-3 (6GK5876-3AA02-2BA2) (All versions < V8.0), SCALANCE M876-3 (ROK) (6GK5876-3AA02-2EA2) (All versions < V8.0), SCALANCE M876-4 (6GK5876-4AA10-2BA2) (All versions < V8.0), SCALANCE M876-4 (EU) (6GK5876-4AA00-2BA2) (All versions < V8.0), SCALANCE M876-4 (NAM) (6GK5876-4AA00-2DA2) (All versions < V8.0), SCALANCE MUM853-1 (EU) (6GK5853-2EA00-2DA1) (All versions < V8.0), SCALANCE MUM856-1 (EU) (6GK5856-2EA00-3DA1) (All versions < V8.0), SCALANCE MUM856-1 (RoW) (6GK5856-2EA00-3AA1) (All versions < V8.0), SCALANCE S615 EEC LAN-Router (6GK5615-0AA01-2AA2) (All versions < V8.0), SCALANCE S615 LAN-Router (6GK5615-0AA00-2AA2) (All versions < V8.0), SCALANCE WAB762-1 (6GK5762-1AJ00-6AA0) (All versions < V3.0.0), SCALANCE WAM763-1 (6GK5763-1AL00-7DA0) (All versions < V3.0.0), SCALANCE WAM763-1 (ME) (6GK5763-1AL00-7DC0) (All versions < V3.0.0), SCALANCE WAM763-1 (US) (6GK5763-1AL00-7DB0) (All versions < V3.0.0), SCALANCE WAM766-1 (6GK5766-1GE00-7DA0) (All versions < V3.0.0), SCALANCE WAM766-1 (ME) (6GK5766-1GE00-7DC0) (All versions < V3.0.0), SCALANCE WAM766-1 (US) (6GK5766-1GE00-7DB0) (All versions < V3.0.0), SCALANCE WAM766-1 EEC (6GK5766-1GE00-7TA0) (All versions < V3.0.0), SCALANCE WAM766-1 EEC (ME) (6GK5766-1GE00-7TC0) (All versions < V3.0.0), SCALANCE WAM766-1 EEC (US) (6GK5766-1GE00-7TB0) (All versions < V3.0.0), SCALANCE WUB762-1 (6GK5762-1AJ00-1AA0) (All versions < V3.0.0), SCALANCE WUB762-1 iFeatures (6GK5762-1AJ00-2AA0) (All versions < V3.0.0), SCALANCE WUM763-1 (6GK5763-1AL00-3AA0) (All versions < V3.0.0), SCALANCE WUM763-1 (6GK5763-1AL00-3DA0) (All versions < V3.0.0), SCALANCE WUM763-1 (US) (6GK5763-1AL00-3AB0) (All versions < V3.0.0), SCALANCE WUM763-1 (US) (6GK5763-1AL00-3DB0) (All versions < V3.0.0), SCALANCE WUM766-1 (6GK5766-1GE00-3DA0) (All versions < V3.0.0), SCALANCE WUM766-1 (ME) (6GK5766-1GE00-3DC0) (All versions < V3.0.0), SCALANCE WUM766-1 (USA) (6GK5766-1GE00-3DB0) (All versions < V3.0.0). Affected devices use a weak checksum algorithm to protect the configuration backup that an administrator can export from the device. This could allow an authenticated attacker with administrative privileges or an attacker that tricks a legitimate administrator to upload a modified configuration file to change the configuration of an affected device.

VendorProductVersions

Siemens

RUGGEDCOM RM1224 LTE(4G) EU

affected
0 - < V8.0

Siemens

RUGGEDCOM RM1224 LTE(4G) NAM

affected
0 - < V8.0

Siemens

SCALANCE M804PB

affected
0 - < V8.0

Siemens

SCALANCE M812-1 ADSL-Router

affected
0 - < V8.0

Siemens

SCALANCE M812-1 ADSL-Router

affected
0 - < V8.0

Siemens

SCALANCE M816-1 ADSL-Router

affected
0 - < V8.0

Siemens

SCALANCE M816-1 ADSL-Router

affected
0 - < V8.0

Siemens

SCALANCE M826-2 SHDSL-Router

affected
0 - < V8.0

Siemens

SCALANCE M874-2

affected
0 - < V8.0

Siemens

SCALANCE M874-3

affected
0 - < V8.0

Siemens

SCALANCE M876-3

affected
0 - < V8.0

Siemens

SCALANCE M876-3 (ROK)

affected
0 - < V8.0

Siemens

SCALANCE M876-4

affected
0 - < V8.0

Siemens

SCALANCE M876-4 (EU)

affected
0 - < V8.0

Siemens

SCALANCE M876-4 (NAM)

affected
0 - < V8.0

Siemens

SCALANCE MUM853-1 (EU)

affected
0 - < V8.0

Siemens

SCALANCE MUM856-1 (EU)

affected
0 - < V8.0

Siemens

SCALANCE MUM856-1 (RoW)

affected
0 - < V8.0

Siemens

SCALANCE S615 EEC LAN-Router

affected
0 - < V8.0

Siemens

SCALANCE S615 LAN-Router

affected
0 - < V8.0

Siemens

SCALANCE WAB762-1

affected
0 - < V3.0.0

Siemens

SCALANCE WAM763-1

affected
0 - < V3.0.0

Siemens

SCALANCE WAM763-1 (ME)

affected
0 - < V3.0.0

Siemens

SCALANCE WAM763-1 (US)

affected
0 - < V3.0.0

Siemens

SCALANCE WAM766-1

affected
0 - < V3.0.0

Siemens

SCALANCE WAM766-1 (ME)

affected
0 - < V3.0.0

Siemens

SCALANCE WAM766-1 (US)

affected
0 - < V3.0.0

Siemens

SCALANCE WAM766-1 EEC

affected
0 - < V3.0.0

Siemens

SCALANCE WAM766-1 EEC (ME)

affected
0 - < V3.0.0

Siemens

SCALANCE WAM766-1 EEC (US)

affected
0 - < V3.0.0

Siemens

SCALANCE WUB762-1

affected
0 - < V3.0.0

Siemens

SCALANCE WUB762-1 iFeatures

affected
0 - < V3.0.0

Siemens

SCALANCE WUM763-1

affected
0 - < V3.0.0

Siemens

SCALANCE WUM763-1

affected
0 - < V3.0.0

Siemens

SCALANCE WUM763-1 (US)

affected
0 - < V3.0.0

Siemens

SCALANCE WUM763-1 (US)

affected
0 - < V3.0.0

Siemens

SCALANCE WUM766-1

affected
0 - < V3.0.0

Siemens

SCALANCE WUM766-1 (ME)

affected
0 - < V3.0.0

Siemens

SCALANCE WUM766-1 (USA)

affected
0 - < V3.0.0

Weaknesses (CWE)

CVSS v3.1 Details

CVSS v3.1 Vector

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N

Attack Vector

Network

Attack Complexity

Low

Privileges Required

High

User Interaction

None

Scope

Unchanged

Confidentiality

None

Integrity

High

Availability

None

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now