A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.1), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2) (All versions < V8.1), SCALANCE M804PB (6GK5804-0AP00-2AA2) (All versions < V8.1), SCALANCE M812-1 ADSL-Router family (All versions < V8.1), SCALANCE M816-1 ADSL-Router family (All versions < V8.1), SCALANCE M826-2 SHDSL-Router (6GK5826-2AB00-2AB2) (All versions < V8.1), SCALANCE M874-2 (6GK5874-2AA00-2AA2) (All versions < V8.1), SCALANCE M874-3 (6GK5874-3AA00-2AA2) (All versions < V8.1), SCALANCE M874-3 3G-Router (CN) (6GK5874-3AA00-2FA2) (All versions < V8.1), SCALANCE M876-3 (6GK5876-3AA02-2BA2) (All versions < V8.1), SCALANCE M876-3 (ROK) (6GK5876-3AA02-2EA2) (All versions < V8.1), SCALANCE M876-4 (6GK5876-4AA10-2BA2) (All versions < V8.1), SCALANCE M876-4 (EU) (6GK5876-4AA00-2BA2) (All versions < V8.1), SCALANCE M876-4 (NAM) (6GK5876-4AA00-2DA2) (All versions < V8.1), SCALANCE MUM853-1 (A1) (6GK5853-2EA10-2AA1) (All versions < V8.1), SCALANCE MUM853-1 (B1) (6GK5853-2EA10-2BA1) (All versions < V8.1), SCALANCE MUM853-1 (EU) (6GK5853-2EA00-2DA1) (All versions < V8.1), SCALANCE MUM856-1 (A1) (6GK5856-2EA10-3AA1) (All versions < V8.1), SCALANCE MUM856-1 (B1) (6GK5856-2EA10-3BA1) (All versions < V8.1), SCALANCE MUM856-1 (CN) (6GK5856-2EA00-3FA1) (All versions < V8.1), SCALANCE MUM856-1 (EU) (6GK5856-2EA00-3DA1) (All versions < V8.1), SCALANCE MUM856-1 (RoW) (6GK5856-2EA00-3AA1) (All versions < V8.1), SCALANCE S615 EEC LAN-Router (6GK5615-0AA01-2AA2) (All versions < V8.1), SCALANCE S615 LAN-Router (6GK5615-0AA00-2AA2) (All versions < V8.1). Affected devices insert sensitive information about the generation of 2FA tokens into log files. This could allow an authenticated remote attacker to forge 2FA tokens of other users.

Project Subscriptions

Vendors Products
Siemens Subscribe
Ruggedcom Rm1224 Lte\(4g\) Eu Subscribe
Ruggedcom Rm1224 Lte\(4g\) Eu Firmware Subscribe
Ruggedcom Rm1224 Lte\(4g\) Nam Subscribe
Ruggedcom Rm1224 Lte\(4g\) Nam Firmware Subscribe
Scalance M804pb Subscribe
Scalance M804pb Firmware Subscribe
Scalance M812-1 \(annex A\) Subscribe
Scalance M812-1 \(annex A\) Firmware Subscribe
Scalance M812-1 \(annex B\) Subscribe
Scalance M812-1 \(annex B\) Firmware Subscribe
Scalance M816-1 \(annex A\) Subscribe
Scalance M816-1 \(annex A\) Firmware Subscribe
Scalance M816-1 \(annex B\) Subscribe
Scalance M816-1 \(annex B\) Firmware Subscribe
Scalance M826-2 Shdsl-router Subscribe
Scalance M826-2 Shdsl-router Firmware Subscribe
Scalance M874-2 Subscribe
Scalance M874-2 Firmware Subscribe
Scalance M874-3 Subscribe
Scalance M874-3 3g-router \(cn\) Subscribe
Scalance M874-3 3g-router \(cn\) Firmware Subscribe
Scalance M874-3 Firmware Subscribe
Scalance M876-3 Subscribe
Scalance M876-3 \(rok\) Subscribe
Scalance M876-3 \(rok\) Firmware Subscribe
Scalance M876-3 Firmware Subscribe
Scalance M876-4 Subscribe
Scalance M876-4 \(eu\) Subscribe
Scalance M876-4 \(eu\) Firmware Subscribe
Scalance M876-4 \(nam\) Subscribe
Scalance M876-4 \(nam\) Firmware Subscribe
Scalance M876-4 Firmware Subscribe
Scalance Mum853-1 \(a1\) Subscribe
Scalance Mum853-1 \(a1\) Firmware Subscribe
Scalance Mum853-1 \(b1\) Subscribe
Scalance Mum853-1 \(b1\) Firmware Subscribe
Scalance Mum853-1 \(eu\) Subscribe
Scalance Mum853-1 \(eu\) Firmware Subscribe
Scalance Mum856-1 \(a1\) Subscribe
Scalance Mum856-1 \(a1\) Firmware Subscribe
Scalance Mum856-1 \(b1\) Subscribe
Scalance Mum856-1 \(b1\) Firmware Subscribe
Scalance Mum856-1 \(cn\) Subscribe
Scalance Mum856-1 \(cn\) Firmware Subscribe
Scalance Mum856-1 \(eu\) Subscribe
Scalance Mum856-1 \(eu\) Firmware Subscribe
Scalance Mum856-1 \(row\) Subscribe
Scalance Mum856-1 \(row\) Firmware Subscribe
Scalance S615 Eec Lan-router Subscribe
Scalance S615 Eec Lan-router Firmware Subscribe
Scalance S615 Lan-router Subscribe
Scalance S615 Lan-router Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2024-39307 A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.1), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2) (All versions < V8.1), SCALANCE M804PB (6GK5804-0AP00-2AA2) (All versions < V8.1), SCALANCE M812-1 ADSL-Router family (All versions < V8.1), SCALANCE M816-1 ADSL-Router family (All versions < V8.1), SCALANCE M826-2 SHDSL-Router (6GK5826-2AB00-2AB2) (All versions < V8.1), SCALANCE M874-2 (6GK5874-2AA00-2AA2) (All versions < V8.1), SCALANCE M874-3 (6GK5874-3AA00-2AA2) (All versions < V8.1), SCALANCE M874-3 3G-Router (CN) (6GK5874-3AA00-2FA2) (All versions < V8.1), SCALANCE M876-3 (6GK5876-3AA02-2BA2) (All versions < V8.1), SCALANCE M876-3 (ROK) (6GK5876-3AA02-2EA2) (All versions < V8.1), SCALANCE M876-4 (6GK5876-4AA10-2BA2) (All versions < V8.1), SCALANCE M876-4 (EU) (6GK5876-4AA00-2BA2) (All versions < V8.1), SCALANCE M876-4 (NAM) (6GK5876-4AA00-2DA2) (All versions < V8.1), SCALANCE MUM853-1 (A1) (6GK5853-2EA10-2AA1) (All versions < V8.1), SCALANCE MUM853-1 (B1) (6GK5853-2EA10-2BA1) (All versions < V8.1), SCALANCE MUM853-1 (EU) (6GK5853-2EA00-2DA1) (All versions < V8.1), SCALANCE MUM856-1 (A1) (6GK5856-2EA10-3AA1) (All versions < V8.1), SCALANCE MUM856-1 (B1) (6GK5856-2EA10-3BA1) (All versions < V8.1), SCALANCE MUM856-1 (CN) (6GK5856-2EA00-3FA1) (All versions < V8.1), SCALANCE MUM856-1 (EU) (6GK5856-2EA00-3DA1) (All versions < V8.1), SCALANCE MUM856-1 (RoW) (6GK5856-2EA00-3AA1) (All versions < V8.1), SCALANCE S615 EEC LAN-Router (6GK5615-0AA01-2AA2) (All versions < V8.1), SCALANCE S615 LAN-Router (6GK5615-0AA00-2AA2) (All versions < V8.1). Affected devices insert sensitive information about the generation of 2FA tokens into log files. This could allow an authenticated remote attacker to forge 2FA tokens of other users.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Fri, 23 Aug 2024 19:00:00 +0000

Type Values Removed Values Added
First Time appeared Siemens
Siemens ruggedcom Rm1224 Lte\(4g\) Eu
Siemens ruggedcom Rm1224 Lte\(4g\) Eu Firmware
Siemens ruggedcom Rm1224 Lte\(4g\) Nam
Siemens ruggedcom Rm1224 Lte\(4g\) Nam Firmware
Siemens scalance M804pb
Siemens scalance M804pb Firmware
Siemens scalance M812-1 \(annex A\)
Siemens scalance M812-1 \(annex A\) Firmware
Siemens scalance M812-1 \(annex B\)
Siemens scalance M812-1 \(annex B\) Firmware
Siemens scalance M816-1 \(annex A\)
Siemens scalance M816-1 \(annex A\) Firmware
Siemens scalance M816-1 \(annex B\)
Siemens scalance M816-1 \(annex B\) Firmware
Siemens scalance M826-2 Shdsl-router
Siemens scalance M826-2 Shdsl-router Firmware
Siemens scalance M874-2
Siemens scalance M874-2 Firmware
Siemens scalance M874-3
Siemens scalance M874-3 3g-router \(cn\)
Siemens scalance M874-3 3g-router \(cn\) Firmware
Siemens scalance M874-3 Firmware
Siemens scalance M876-3
Siemens scalance M876-3 \(rok\)
Siemens scalance M876-3 \(rok\) Firmware
Siemens scalance M876-3 Firmware
Siemens scalance M876-4
Siemens scalance M876-4 \(eu\)
Siemens scalance M876-4 \(eu\) Firmware
Siemens scalance M876-4 \(nam\)
Siemens scalance M876-4 \(nam\) Firmware
Siemens scalance M876-4 Firmware
Siemens scalance Mum853-1 \(a1\)
Siemens scalance Mum853-1 \(a1\) Firmware
Siemens scalance Mum853-1 \(b1\)
Siemens scalance Mum853-1 \(b1\) Firmware
Siemens scalance Mum853-1 \(eu\)
Siemens scalance Mum853-1 \(eu\) Firmware
Siemens scalance Mum856-1 \(a1\)
Siemens scalance Mum856-1 \(a1\) Firmware
Siemens scalance Mum856-1 \(b1\)
Siemens scalance Mum856-1 \(b1\) Firmware
Siemens scalance Mum856-1 \(cn\)
Siemens scalance Mum856-1 \(cn\) Firmware
Siemens scalance Mum856-1 \(eu\)
Siemens scalance Mum856-1 \(eu\) Firmware
Siemens scalance Mum856-1 \(row\)
Siemens scalance Mum856-1 \(row\) Firmware
Siemens scalance S615 Eec Lan-router
Siemens scalance S615 Eec Lan-router Firmware
Siemens scalance S615 Lan-router
Siemens scalance S615 Lan-router Firmware
CPEs cpe:2.3:h:siemens:ruggedcom_rm1224_lte\(4g\)_eu:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:ruggedcom_rm1224_lte\(4g\)_nam:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_m804pb:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_m812-1_\(annex_a\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_m812-1_\(annex_b\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_m816-1_\(annex_a\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_m816-1_\(annex_b\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_m826-2_shdsl-router:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_m874-2:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_m874-3:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_m874-3_3g-router_\(cn\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_m876-3:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_m876-3_\(rok\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_m876-4:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_m876-4_\(eu\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_m876-4_\(nam\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_mum853-1_\(a1\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_mum853-1_\(b1\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_mum853-1_\(eu\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_mum856-1_\(a1\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_mum856-1_\(b1\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_mum856-1_\(cn\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_mum856-1_\(eu\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_mum856-1_\(row\):-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_s615_eec_lan-router:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_s615_lan-router:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:ruggedcom_rm1224_lte\(4g\)_eu_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:ruggedcom_rm1224_lte\(4g\)_nam_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_m804pb_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_m812-1_\(annex_a\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_m812-1_\(annex_b\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_m816-1_\(annex_a\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_m816-1_\(annex_b\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_m826-2_shdsl-router_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_m874-2_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_m874-3_3g-router_\(cn\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_m874-3_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_m876-3_\(rok\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_m876-3_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_m876-4_\(eu\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_m876-4_\(nam\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_m876-4_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_mum853-1_\(a1\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_mum853-1_\(b1\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_mum853-1_\(eu\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_mum856-1_\(a1\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_mum856-1_\(b1\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_mum856-1_\(cn\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_mum856-1_\(eu\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_mum856-1_\(row\)_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_s615_eec_lan-router_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:scalance_s615_lan-router_firmware:*:*:*:*:*:*:*:*
Vendors & Products Siemens
Siemens ruggedcom Rm1224 Lte\(4g\) Eu
Siemens ruggedcom Rm1224 Lte\(4g\) Eu Firmware
Siemens ruggedcom Rm1224 Lte\(4g\) Nam
Siemens ruggedcom Rm1224 Lte\(4g\) Nam Firmware
Siemens scalance M804pb
Siemens scalance M804pb Firmware
Siemens scalance M812-1 \(annex A\)
Siemens scalance M812-1 \(annex A\) Firmware
Siemens scalance M812-1 \(annex B\)
Siemens scalance M812-1 \(annex B\) Firmware
Siemens scalance M816-1 \(annex A\)
Siemens scalance M816-1 \(annex A\) Firmware
Siemens scalance M816-1 \(annex B\)
Siemens scalance M816-1 \(annex B\) Firmware
Siemens scalance M826-2 Shdsl-router
Siemens scalance M826-2 Shdsl-router Firmware
Siemens scalance M874-2
Siemens scalance M874-2 Firmware
Siemens scalance M874-3
Siemens scalance M874-3 3g-router \(cn\)
Siemens scalance M874-3 3g-router \(cn\) Firmware
Siemens scalance M874-3 Firmware
Siemens scalance M876-3
Siemens scalance M876-3 \(rok\)
Siemens scalance M876-3 \(rok\) Firmware
Siemens scalance M876-3 Firmware
Siemens scalance M876-4
Siemens scalance M876-4 \(eu\)
Siemens scalance M876-4 \(eu\) Firmware
Siemens scalance M876-4 \(nam\)
Siemens scalance M876-4 \(nam\) Firmware
Siemens scalance M876-4 Firmware
Siemens scalance Mum853-1 \(a1\)
Siemens scalance Mum853-1 \(a1\) Firmware
Siemens scalance Mum853-1 \(b1\)
Siemens scalance Mum853-1 \(b1\) Firmware
Siemens scalance Mum853-1 \(eu\)
Siemens scalance Mum853-1 \(eu\) Firmware
Siemens scalance Mum856-1 \(a1\)
Siemens scalance Mum856-1 \(a1\) Firmware
Siemens scalance Mum856-1 \(b1\)
Siemens scalance Mum856-1 \(b1\) Firmware
Siemens scalance Mum856-1 \(cn\)
Siemens scalance Mum856-1 \(cn\) Firmware
Siemens scalance Mum856-1 \(eu\)
Siemens scalance Mum856-1 \(eu\) Firmware
Siemens scalance Mum856-1 \(row\)
Siemens scalance Mum856-1 \(row\) Firmware
Siemens scalance S615 Eec Lan-router
Siemens scalance S615 Eec Lan-router Firmware
Siemens scalance S615 Lan-router
Siemens scalance S615 Lan-router Firmware

Tue, 13 Aug 2024 14:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 13 Aug 2024 08:00:00 +0000

Type Values Removed Values Added
Description A vulnerability has been identified in RUGGEDCOM RM1224 LTE(4G) EU (6GK6108-4AM00-2BA2) (All versions < V8.1), RUGGEDCOM RM1224 LTE(4G) NAM (6GK6108-4AM00-2DA2) (All versions < V8.1), SCALANCE M804PB (6GK5804-0AP00-2AA2) (All versions < V8.1), SCALANCE M812-1 ADSL-Router family (All versions < V8.1), SCALANCE M816-1 ADSL-Router family (All versions < V8.1), SCALANCE M826-2 SHDSL-Router (6GK5826-2AB00-2AB2) (All versions < V8.1), SCALANCE M874-2 (6GK5874-2AA00-2AA2) (All versions < V8.1), SCALANCE M874-3 (6GK5874-3AA00-2AA2) (All versions < V8.1), SCALANCE M874-3 3G-Router (CN) (6GK5874-3AA00-2FA2) (All versions < V8.1), SCALANCE M876-3 (6GK5876-3AA02-2BA2) (All versions < V8.1), SCALANCE M876-3 (ROK) (6GK5876-3AA02-2EA2) (All versions < V8.1), SCALANCE M876-4 (6GK5876-4AA10-2BA2) (All versions < V8.1), SCALANCE M876-4 (EU) (6GK5876-4AA00-2BA2) (All versions < V8.1), SCALANCE M876-4 (NAM) (6GK5876-4AA00-2DA2) (All versions < V8.1), SCALANCE MUM853-1 (A1) (6GK5853-2EA10-2AA1) (All versions < V8.1), SCALANCE MUM853-1 (B1) (6GK5853-2EA10-2BA1) (All versions < V8.1), SCALANCE MUM853-1 (EU) (6GK5853-2EA00-2DA1) (All versions < V8.1), SCALANCE MUM856-1 (A1) (6GK5856-2EA10-3AA1) (All versions < V8.1), SCALANCE MUM856-1 (B1) (6GK5856-2EA10-3BA1) (All versions < V8.1), SCALANCE MUM856-1 (CN) (6GK5856-2EA00-3FA1) (All versions < V8.1), SCALANCE MUM856-1 (EU) (6GK5856-2EA00-3DA1) (All versions < V8.1), SCALANCE MUM856-1 (RoW) (6GK5856-2EA00-3AA1) (All versions < V8.1), SCALANCE S615 EEC LAN-Router (6GK5615-0AA01-2AA2) (All versions < V8.1), SCALANCE S615 LAN-Router (6GK5615-0AA00-2AA2) (All versions < V8.1). Affected devices insert sensitive information about the generation of 2FA tokens into log files. This could allow an authenticated remote attacker to forge 2FA tokens of other users.
Weaknesses CWE-532
References
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:P/RL:O/RC:C'}

cvssV4_0

{'score': 7.1, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: siemens

Published:

Updated: 2024-08-13T13:29:07.876Z

Reserved: 2024-07-25T11:00:11.939Z

Link: CVE-2024-41978

cve-icon Vulnrichment

Updated: 2024-08-13T13:29:03.474Z

cve-icon NVD

Status : Analyzed

Published: 2024-08-13T08:15:15.903

Modified: 2024-08-23T18:34:36.283

Link: CVE-2024-41978

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses