6.8
CVE-2014-8479
- EPSS 0.42%
- Veröffentlicht 21.01.2015 17:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
- Quelle cve@mitre.org
- Teams Watchlist Login
- Unerledigt Login
The FTP server on Siemens SCALANCE X-300 switches with firmware before 4.0 and SCALANCE X 408 switches with firmware before 4.0 allows remote authenticated users to cause a denial of service (reboot) via crafted FTP packets.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Siemens ≫ Scalance X-408 Firmware Version <= 3.9.3
Siemens ≫ Scalance X-300 Series Firmware Version <= 3.9.3
Siemens ≫ Scalance X-300 Version-
Siemens ≫ Scalance X-300eec Version-
Siemens ≫ Scalance X-300poe Version-
Siemens ≫ Scalance Xr-300 Version-
Siemens ≫ Scalance Xr-300eec Version-
Siemens ≫ Scalance Xr-300poe Version-
Siemens ≫ Scalance X-300eec Version-
Siemens ≫ Scalance X-300poe Version-
Siemens ≫ Scalance Xr-300 Version-
Siemens ≫ Scalance Xr-300eec Version-
Siemens ≫ Scalance Xr-300poe Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.42% | 0.591 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 6.8 | 8 | 6.9 |
AV:N/AC:L/Au:S/C:N/I:N/A:C
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.