6.1

CVE-2024-30190

A vulnerability has been identified in SCALANCE W1748-1 M12 (6GK5748-1GY01-0AA0), SCALANCE W1748-1 M12 (6GK5748-1GY01-0TA0), SCALANCE W1788-1 M12 (6GK5788-1GY01-0AA0), SCALANCE W1788-2 EEC M12 (6GK5788-2GY01-0TA0), SCALANCE W1788-2 M12 (6GK5788-2GY01-0AA0), SCALANCE W1788-2IA M12 (6GK5788-2HY01-0AA0), SCALANCE W721-1 RJ45 (6GK5721-1FC00-0AA0), SCALANCE W721-1 RJ45 (6GK5721-1FC00-0AB0), SCALANCE W722-1 RJ45 (6GK5722-1FC00-0AA0), SCALANCE W722-1 RJ45 (6GK5722-1FC00-0AB0), SCALANCE W722-1 RJ45 (6GK5722-1FC00-0AC0), SCALANCE W734-1 RJ45 (6GK5734-1FX00-0AA0), SCALANCE W734-1 RJ45 (6GK5734-1FX00-0AA6), SCALANCE W734-1 RJ45 (6GK5734-1FX00-0AB0), SCALANCE W734-1 RJ45 (USA) (6GK5734-1FX00-0AB6), SCALANCE W738-1 M12 (6GK5738-1GY00-0AA0), SCALANCE W738-1 M12 (6GK5738-1GY00-0AB0), SCALANCE W748-1 M12 (6GK5748-1GD00-0AA0), SCALANCE W748-1 M12 (6GK5748-1GD00-0AB0), SCALANCE W748-1 RJ45 (6GK5748-1FC00-0AA0), SCALANCE W748-1 RJ45 (6GK5748-1FC00-0AB0), SCALANCE W761-1 RJ45 (6GK5761-1FC00-0AA0), SCALANCE W761-1 RJ45 (6GK5761-1FC00-0AB0), SCALANCE W774-1 M12 EEC (6GK5774-1FY00-0TA0), SCALANCE W774-1 M12 EEC (6GK5774-1FY00-0TB0), SCALANCE W774-1 RJ45 (6GK5774-1FX00-0AA0), SCALANCE W774-1 RJ45 (6GK5774-1FX00-0AA6), SCALANCE W774-1 RJ45 (6GK5774-1FX00-0AB0), SCALANCE W774-1 RJ45 (6GK5774-1FX00-0AC0), SCALANCE W774-1 RJ45 (USA) (6GK5774-1FX00-0AB6), SCALANCE W778-1 M12 (6GK5778-1GY00-0AA0), SCALANCE W778-1 M12 (6GK5778-1GY00-0AB0), SCALANCE W778-1 M12 EEC (6GK5778-1GY00-0TA0), SCALANCE W778-1 M12 EEC (USA) (6GK5778-1GY00-0TB0), SCALANCE W786-1 RJ45 (6GK5786-1FC00-0AA0), SCALANCE W786-1 RJ45 (6GK5786-1FC00-0AB0), SCALANCE W786-2 RJ45 (6GK5786-2FC00-0AA0), SCALANCE W786-2 RJ45 (6GK5786-2FC00-0AB0), SCALANCE W786-2 RJ45 (6GK5786-2FC00-0AC0), SCALANCE W786-2 SFP (6GK5786-2FE00-0AA0), SCALANCE W786-2 SFP (6GK5786-2FE00-0AB0), SCALANCE W786-2IA RJ45 (6GK5786-2HC00-0AA0), SCALANCE W786-2IA RJ45 (6GK5786-2HC00-0AB0), SCALANCE W788-1 M12 (6GK5788-1GD00-0AA0), SCALANCE W788-1 M12 (6GK5788-1GD00-0AB0), SCALANCE W788-1 RJ45 (6GK5788-1FC00-0AA0), SCALANCE W788-1 RJ45 (6GK5788-1FC00-0AB0), SCALANCE W788-2 M12 (6GK5788-2GD00-0AA0), SCALANCE W788-2 M12 (6GK5788-2GD00-0AB0), SCALANCE W788-2 M12 EEC (6GK5788-2GD00-0TA0), SCALANCE W788-2 M12 EEC (6GK5788-2GD00-0TB0), SCALANCE W788-2 M12 EEC (6GK5788-2GD00-0TC0), SCALANCE W788-2 RJ45 (6GK5788-2FC00-0AA0), SCALANCE W788-2 RJ45 (6GK5788-2FC00-0AB0), SCALANCE W788-2 RJ45 (6GK5788-2FC00-0AC0), SCALANCE WAM763-1 (6GK5763-1AL00-7DA0), SCALANCE WAM766-1 (EU) (6GK5766-1GE00-7DA0), SCALANCE WAM766-1 (US) (6GK5766-1GE00-7DB0), SCALANCE WAM766-1 EEC (EU) (6GK5766-1GE00-7TA0), SCALANCE WAM766-1 EEC (US) (6GK5766-1GE00-7TB0), SCALANCE WUM763-1 (6GK5763-1AL00-3AA0), SCALANCE WUM763-1 (6GK5763-1AL00-3DA0), SCALANCE WUM766-1 (EU) (6GK5766-1GE00-3DA0), SCALANCE WUM766-1 (US) (6GK5766-1GE00-3DB0). This CVE refers to Scenario 2 "Abuse the queue for network disruptions" of CVE-2022-47522.

Affected devices can be tricked into enabling its power-saving mechanisms for a victim client. This could allow a physically proximate attacker to execute disconnection and denial-of-service attacks.

Verknüpft mit AI von unstrukturierten Daten zu bestehenden CPE der NVD
This information is available to logged-in users.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
VendorSiemens
Product SCALANCE W1748-1 M12
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W1748-1 M12
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W1788-1 M12
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W1788-2 EEC M12
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W1788-2 M12
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W1788-2IA M12
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W721-1 RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W721-1 RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W722-1 RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W722-1 RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W722-1 RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W734-1 RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W734-1 RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W734-1 RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W734-1 RJ45 (USA)
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W738-1 M12
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W738-1 M12
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W748-1 M12
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W748-1 M12
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W748-1 RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W748-1 RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W761-1 RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W761-1 RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W774-1 M12 EEC
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W774-1 M12 EEC
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W774-1 RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W774-1 RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W774-1 RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W774-1 RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W774-1 RJ45 (USA)
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W778-1 M12
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W778-1 M12
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W778-1 M12 EEC
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W778-1 M12 EEC (USA)
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W786-1 RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W786-1 RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W786-2 RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W786-2 RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W786-2 RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W786-2 SFP
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W786-2 SFP
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W786-2IA RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W786-2IA RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W788-1 M12
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W788-1 M12
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W788-1 RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W788-1 RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W788-2 M12
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W788-2 M12
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W788-2 M12 EEC
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W788-2 M12 EEC
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W788-2 M12 EEC
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W788-2 RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W788-2 RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE W788-2 RJ45
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE WAM763-1
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE WAM766-1 (EU)
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE WAM766-1 (US)
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE WAM766-1 EEC (EU)
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE WAM766-1 EEC (US)
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE WUM763-1
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE WUM763-1
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE WUM766-1 (EU)
Default Statusunknown
Version < *
Version 0
Status affected
VendorSiemens
Product SCALANCE WUM766-1 (US)
Default Statusunknown
Version < *
Version 0
Status affected
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.07% 0.21
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
productcert@siemens.com 6.1 1.7 4
CVSS:3.1/AV:A/AC:L/PR:L/UI:R/S:C/C:N/I:N/A:H
CWE-290 Authentication Bypass by Spoofing

This attack-focused weakness is caused by incorrectly implemented authentication schemes that are subject to spoofing attacks.