CVE Database
/

CVE-2025-23384

Back to search

CVE-2025-23384

Published: Mar 11, 2025

Modified: May 12, 2026

PUBLISHED

CVSS v3.1

3.7

LOW

Description

A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.2.1), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2) (All versions < V8.2.1), SCALANCE M804PB (6GK5804-0AP00-2AA2) (All versions < V8.2.1), SCALANCE M812-1 ADSL-Router family (All versions < V8.2.1), SCALANCE M816-1 ADSL-Router family (All versions < V8.2.1), SCALANCE M826-2 SHDSL-Router (6GK5826-2AB00-2AB2) (All versions < V8.2.1), SCALANCE M874-2 (6GK5874-2AA00-2AA2) (All versions < V8.2.1), SCALANCE M874-3 (6GK5874-3AA00-2AA2) (All versions < V8.2.1), SCALANCE M874-3 3G-Router (CN) (6GK5874-3AA00-2FA2) (All versions < V8.2.1), SCALANCE M876-3 (6GK5876-3AA02-2BA2) (All versions < V8.2.1), SCALANCE M876-3 (ROK) (6GK5876-3AA02-2EA2) (All versions < V8.2.1), SCALANCE M876-4 (6GK5876-4AA10-2BA2) (All versions < V8.2.1), SCALANCE M876-4 (EU) (6GK5876-4AA00-2BA2) (All versions < V8.2.1), SCALANCE M876-4 (NAM) (6GK5876-4AA00-2DA2) (All versions < V8.2.1), SCALANCE MUB852-1 (A1) (6GK5852-1EA10-1AA1) (All versions < V8.2.1), SCALANCE MUB852-1 (B1) (6GK5852-1EA10-1BA1) (All versions < V8.2.1), SCALANCE MUM853-1 (A1) (6GK5853-2EA10-2AA1) (All versions < V8.2.1), SCALANCE MUM853-1 (B1) (6GK5853-2EA10-2BA1) (All versions < V8.2.1), SCALANCE MUM853-1 (EU) (6GK5853-2EA00-2DA1) (All versions < V8.2.1), SCALANCE MUM856-1 (A1) (6GK5856-2EA10-3AA1) (All versions < V8.2.1), SCALANCE MUM856-1 (B1) (6GK5856-2EA10-3BA1) (All versions < V8.2.1), SCALANCE MUM856-1 (CN) (6GK5856-2EA00-3FA1) (All versions < V8.2.1), SCALANCE MUM856-1 (EU) (6GK5856-2EA00-3DA1) (All versions < V8.2.1), SCALANCE MUM856-1 (RoW) (6GK5856-2EA00-3AA1) (All versions < V8.2.1), SCALANCE S615 EEC LAN-Router (6GK5615-0AA01-2AA2) (All versions < V8.2.1), SCALANCE S615 LAN-Router (6GK5615-0AA00-2AA2) (All versions < V8.2.1), SCALANCE SC622-2C (6GK5622-2GS00-2AC2) (All versions < V3.2), SCALANCE SC626-2C (6GK5626-2GS00-2AC2) (All versions < V3.2), SCALANCE SC632-2C (6GK5632-2GS00-2AC2) (All versions < V3.2), SCALANCE SC636-2C (6GK5636-2GS00-2AC2) (All versions < V3.2), SCALANCE SC642-2C (6GK5642-2GS00-2AC2) (All versions < V3.2), SCALANCE SC646-2C (6GK5646-2GS00-2AC2) (All versions < V3.2). Affected devices improperly validate usernames during OpenVPN authentication. This could allow an attacker to get partial invalid usernames accepted by the server.

VendorProductVersions

Siemens

RUGGEDCOM RM1224 LTE(4G) EU

affected
0 - < V8.2.1

Siemens

RUGGEDCOM RM1224 LTE(4G) NAM

affected
0 - < V8.2.1

Siemens

SCALANCE M804PB

affected
0 - < V8.2.1

Siemens

SCALANCE M812-1 ADSL-Router family

affected
0 - < V8.2.1

Siemens

SCALANCE M816-1 ADSL-Router family

affected
0 - < V8.2.1

Siemens

SCALANCE M826-2 SHDSL-Router

affected
0 - < V8.2.1

Siemens

SCALANCE M874-2

affected
0 - < V8.2.1

Siemens

SCALANCE M874-3

affected
0 - < V8.2.1

Siemens

SCALANCE M874-3 3G-Router (CN)

affected
0 - < V8.2.1

Siemens

SCALANCE M876-3

affected
0 - < V8.2.1

Siemens

SCALANCE M876-3 (ROK)

affected
0 - < V8.2.1

Siemens

SCALANCE M876-4

affected
0 - < V8.2.1

Siemens

SCALANCE M876-4 (EU)

affected
0 - < V8.2.1

Siemens

SCALANCE M876-4 (NAM)

affected
0 - < V8.2.1

Siemens

SCALANCE MUB852-1 (A1)

affected
0 - < V8.2.1

Siemens

SCALANCE MUB852-1 (B1)

affected
0 - < V8.2.1

Siemens

SCALANCE MUM853-1 (A1)

affected
0 - < V8.2.1

Siemens

SCALANCE MUM853-1 (B1)

affected
0 - < V8.2.1

Siemens

SCALANCE MUM853-1 (EU)

affected
0 - < V8.2.1

Siemens

SCALANCE MUM856-1 (A1)

affected
0 - < V8.2.1

Siemens

SCALANCE MUM856-1 (B1)

affected
0 - < V8.2.1

Siemens

SCALANCE MUM856-1 (CN)

affected
0 - < V8.2.1

Siemens

SCALANCE MUM856-1 (EU)

affected
0 - < V8.2.1

Siemens

SCALANCE MUM856-1 (RoW)

affected
0 - < V8.2.1

Siemens

SCALANCE S615 EEC LAN-Router

affected
0 - < V8.2.1

Siemens

SCALANCE S615 LAN-Router

affected
0 - < V8.2.1

Siemens

SCALANCE SC622-2C

affected
0 - < V3.2

Siemens

SCALANCE SC626-2C

affected
0 - < V3.2

Siemens

SCALANCE SC632-2C

affected
0 - < V3.2

Siemens

SCALANCE SC636-2C

affected
0 - < V3.2

Siemens

SCALANCE SC642-2C

affected
0 - < V3.2

Siemens

SCALANCE SC646-2C

affected
0 - < V3.2

Weaknesses (CWE)

CVSS v3.1 Details

CVSS v3.1 Vector

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N/E:P/RL:O/RC:C

Attack Vector

Network

Attack Complexity

High

Privileges Required

None

User Interaction

None

Scope

Unchanged

Confidentiality

None

Integrity

Low

Availability

None

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now