Siemens SINAMICS S/G controllers with firmware before 4.6.11 do not require authentication for FTP and TELNET sessions, which allows remote attackers to bypass intended access restrictions via TCP traffic to port (1) 21 or (2) 23.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Siemens
Subscribe
|
Sinamics G110
Subscribe
Sinamics G110d
Subscribe
Sinamics G120
Subscribe
Sinamics G120c
Subscribe
Sinamics G120d
Subscribe
Sinamics G120p
Subscribe
Sinamics G130
Subscribe
Sinamics G150
Subscribe
Sinamics G180
Subscribe
Sinamics S110
Subscribe
Sinamics S120
Subscribe
Sinamics S120cm
Subscribe
Sinamics S150
Subscribe
Sinamics S\/g Family Firmware
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2013-6721 | Siemens SINAMICS S/G controllers with firmware before 4.6.11 do not require authentication for FTP and TELNET sessions, which allows remote attackers to bypass intended access restrictions via TCP traffic to port (1) 21 or (2) 23. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T17:53:45.861Z
Reserved: 2013-12-02T00:00:00.000Z
Link: CVE-2013-6920
No data.
Status : Deferred
Published: 2013-12-07T00:55:04.147
Modified: 2025-04-11T00:51:21.963
Link: CVE-2013-6920
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD