5
CVE-2014-2590
- EPSS 0.31%
- Published 01.04.2014 06:29:39
- Last modified 12.04.2025 10:46:40
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
The web management interface in Siemens RuggedCom ROS before 3.11, ROS 3.11 before 3.11.5 for RS950G, ROS 3.12, and ROS 4.0 for RSG2488 allows remote attackers to cause a denial of service (interface outage) via crafted HTTP packets.
Data is provided by the National Vulnerability Database (NVD)
Siemens ≫ Ruggedcom Rugged Operating System Version < 3.11.0
Siemens ≫ Ruggedcom Rugged Operating System Version >= 3.12 < 3.12.4
Siemens ≫ Ruggedcom Rugged Operating System Version > 3.11.0 < 3.11.5
Siemens ≫ Ruggedcom Rugged Operating System Version > 4.0 < 4.1.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.31% | 0.507 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:N/I:N/A:P
|
CWE-306 Missing Authentication for Critical Function
The product does not perform any authentication for functionality that requires a provable user identity or consumes a significant amount of resources.