Home/Product/siemens scalance xc224 4c g eec firmware
Product

siemens scalance xc224 4c g eec firmware

11 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2023-44317
all versions
A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V7.2.2), RUGGEDCOM RM1224
7.2HIGH
CVE-2022-46143
all versions
Affected devices do not check the TFTP blocksize correctly. This could allow an authenticated attacker to read from an uninitializ
2.7LOW
CVE-2022-46142
all versions
Affected devices store the CLI user passwords encrypted in flash memory. Attackers with physical access to the device could retrie
5.7MEDIUM
CVE-2022-46140
all versions
Affected devices use a weak encryption scheme to encrypt the debug zip file. This could allow an authenticated attacker to decrypt
6.5MEDIUM
CVE-2022-36325
all versions
Affected devices do not properly sanitize data introduced by an user when rendering the web interface. This could allow an authent
6.8MEDIUM
CVE-2022-36324
all versions
Affected devices do not properly handle the renegotiation of SSL/TLS parameters. This could allow an unauthenticated remote attack
7.5HIGH
CVE-2022-36323
all versions
Affected devices do not properly sanitize an input field. This could allow an authenticated remote attacker with administrative p
9.1CRITICAL
CVE-2020-28391
< 5.2.5
A vulnerability has been identified in SCALANCE X-200 switch family (incl. SIPLUS NET variants) (All versions < V5.2.5), SCALANCE
5.9MEDIUM
CVE-2020-25226
< 5.2.5
A vulnerability has been identified in SCALANCE X-200 switch family (incl. SIPLUS NET variants) (All versions < V5.2.5), SCALANCE
9.8CRITICAL
CVE-2020-15800
< 5.2.5
A vulnerability has been identified in SCALANCE X-200 switch family (incl. SIPLUS NET variants) (All versions < V5.2.5), SCALANCE
9.8CRITICAL
CVE-2020-15799
< 5.2.5
A vulnerability has been identified in SCALANCE X-200 switch family (incl. SIPLUS NET variants) (All versions < V5.2.5), SCALANCE
6.5MEDIUM
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin