Description
A vulnerability has been identified in SCALANCE X204RNA (HSR) (All versions < V3.2.7), SCALANCE X204RNA (PRP) (All versions < V3.2.7), SCALANCE X204RNA EEC (HSR) (All versions < V3.2.7), SCALANCE X204RNA EEC (PRP) (All versions < V3.2.7), SCALANCE X204RNA EEC (PRP/HSR) (All versions < V3.2.7). The webserver of an affected device is missing specific security headers. This could allow an remote attacker to extract confidential session information under certain circumstances.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-49170 | A vulnerability has been identified in SCALANCE X204RNA (HSR) (All versions < V3.2.7), SCALANCE X204RNA (PRP) (All versions < V3.2.7), SCALANCE X204RNA EEC (HSR) (All versions < V3.2.7), SCALANCE X204RNA EEC (PRP) (All versions < V3.2.7), SCALANCE X204RNA EEC (PRP/HSR) (All versions < V3.2.7). The webserver of an affected device is missing specific security headers. This could allow an remote attacker to extract confidential session information under certain circumstances. |
References
History
Tue, 22 Apr 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Subscriptions
Siemens
Subscribe
6gk5204-0ba00-2kb2
Subscribe
6gk5204-0ba00-2kb2 Firmware
Subscribe
6gk5204-0ba00-2mb2
Subscribe
6gk5204-0ba00-2mb2 Firmware
Subscribe
6gk5204-0bs00-2na3
Subscribe
6gk5204-0bs00-2na3 Firmware
Subscribe
6gk5204-0bs00-3la3
Subscribe
6gk5204-0bs00-3la3 Firmware
Subscribe
6gk5204-0bs00-3pa3
Subscribe
6gk5204-0bs00-3pa3 Firmware
Subscribe
Status: PUBLISHED
Assigner: siemens
Published:
Updated: 2025-04-22T14:40:48.175Z
Reserved: 2022-11-30T00:00:00.000Z
Link: CVE-2022-46354
Updated: 2024-08-03T14:31:45.855Z
Status : Modified
Published: 2022-12-13T16:15:25.917
Modified: 2025-04-22T15:16:06.610
Link: CVE-2022-46354
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD