Aller au contenu

Fiche vulnérabilité

CVE-2022-46355 : faille élevée Siemens SCALANCE X204RNA (HSR) (CVSS 7.5)

Description

A vulnerability has been identified in SCALANCE X204RNA (HSR) (All versions < V3.2.7), SCALANCE X204RNA (PRP) (All versions < V3.2.7), SCALANCE X204RNA EEC (HSR) (All versions < V3.2.7), SCALANCE X204RNA EEC (PRP) (All versions < V3.2.7), SCALANCE X204RNA EEC (PRP/HSR) (All versions < V3.2.7). The affected products are vulnerable to an "Exposure of Sensitive Information to an Unauthorized Actor" vulnerability by leaking sensitive data in the HTTP Referer.

En bref

Sévérité
Élevée (CVSS 7.5)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitation active
Non signalée par la CISA
Publication
13 déc. 2022
Dernière mise à jour
22 avr. 2025

Produits concernés

  • Siemens SCALANCE X204RNA (HSR)
  • Siemens SCALANCE X204RNA (PRP)
  • Siemens SCALANCE X204RNA EEC (HSR)
  • Siemens SCALANCE X204RNA EEC (PRP)
  • Siemens SCALANCE X204RNA EEC (PRP/HSR)

Références

Rechercher une autre vulnérabilité dans la base CVE