CVE-2012-1799
 
Severity Score
10.0
*CVSS v2
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
The web server on the Siemens Scalance S Security Module firewall S602 V2, S612 V2, and S613 V2 with firmware before 2.3.0.3 does not limit the rate of authentication attempts, which makes it easier for remote attackers to obtain access via a brute-force attack on the administrative password.
Ell servidor web en el cortafuegos Siemens Scalance S Security Module S602 V2, S612 V2, and S613 V2 con el firmware anterior a v2.3.0.3 no limita la tasa de intentos de autenticación, lo que hace que sea más fácil para los atacantes remotos obtener acceso a través de un ataque de fuerza bruta sobre la contraseña administrativa.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2012-03-21 CVE Reserved
- 2012-04-18 CVE Published
- 2023-03-07 EPSS Updated
- 2024-08-06 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-287: Improper Authentication
CAPEC
References (4)
URL | Tag | Source |
---|---|---|
http://osvdb.org/81033 | Vdb Entry | |
http://support.automation.siemens.com/WW/view/en/59869684 | X_refsource_confirm | |
http://www.us-cert.gov/control_systems/pdf/ICSA-12-102-05.pdf | Us Government Resource |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Siemens Search vendor "Siemens" | Scalance S Firmware Search vendor "Siemens" for product "Scalance S Firmware" | <= 2.3.0 Search vendor "Siemens" for product "Scalance S Firmware" and version " <= 2.3.0" | - |
Affected
| in | Siemens Search vendor "Siemens" | Scalance S602 Search vendor "Siemens" for product "Scalance S602" | v2 Search vendor "Siemens" for product "Scalance S602" and version "v2" | - |
Affected
|
Siemens Search vendor "Siemens" | Scalance S Firmware Search vendor "Siemens" for product "Scalance S Firmware" | <= 2.3.0 Search vendor "Siemens" for product "Scalance S Firmware" and version " <= 2.3.0" | - |
Affected
| in | Siemens Search vendor "Siemens" | Scalance S612 Search vendor "Siemens" for product "Scalance S612" | v2 Search vendor "Siemens" for product "Scalance S612" and version "v2" | - |
Affected
|
Siemens Search vendor "Siemens" | Scalance S Firmware Search vendor "Siemens" for product "Scalance S Firmware" | <= 2.3.0 Search vendor "Siemens" for product "Scalance S Firmware" and version " <= 2.3.0" | - |
Affected
| in | Siemens Search vendor "Siemens" | Scalance S613 Search vendor "Siemens" for product "Scalance S613" | v2 Search vendor "Siemens" for product "Scalance S613" and version "v2" | - |
Affected
|
Siemens Search vendor "Siemens" | Scalance S Firmware Search vendor "Siemens" for product "Scalance S Firmware" | 2.1.0 Search vendor "Siemens" for product "Scalance S Firmware" and version "2.1.0" | - |
Affected
| in | Siemens Search vendor "Siemens" | Scalance S602 Search vendor "Siemens" for product "Scalance S602" | v2 Search vendor "Siemens" for product "Scalance S602" and version "v2" | - |
Affected
|
Siemens Search vendor "Siemens" | Scalance S Firmware Search vendor "Siemens" for product "Scalance S Firmware" | 2.1.0 Search vendor "Siemens" for product "Scalance S Firmware" and version "2.1.0" | - |
Affected
| in | Siemens Search vendor "Siemens" | Scalance S612 Search vendor "Siemens" for product "Scalance S612" | v2 Search vendor "Siemens" for product "Scalance S612" and version "v2" | - |
Affected
|
Siemens Search vendor "Siemens" | Scalance S Firmware Search vendor "Siemens" for product "Scalance S Firmware" | 2.1.0 Search vendor "Siemens" for product "Scalance S Firmware" and version "2.1.0" | - |
Affected
| in | Siemens Search vendor "Siemens" | Scalance S613 Search vendor "Siemens" for product "Scalance S613" | v2 Search vendor "Siemens" for product "Scalance S613" and version "v2" | - |
Affected
|
Siemens Search vendor "Siemens" | Scalance S Firmware Search vendor "Siemens" for product "Scalance S Firmware" | 2.2.0 Search vendor "Siemens" for product "Scalance S Firmware" and version "2.2.0" | - |
Affected
| in | Siemens Search vendor "Siemens" | Scalance S602 Search vendor "Siemens" for product "Scalance S602" | v2 Search vendor "Siemens" for product "Scalance S602" and version "v2" | - |
Affected
|
Siemens Search vendor "Siemens" | Scalance S Firmware Search vendor "Siemens" for product "Scalance S Firmware" | 2.2.0 Search vendor "Siemens" for product "Scalance S Firmware" and version "2.2.0" | - |
Affected
| in | Siemens Search vendor "Siemens" | Scalance S612 Search vendor "Siemens" for product "Scalance S612" | v2 Search vendor "Siemens" for product "Scalance S612" and version "v2" | - |
Affected
|
Siemens Search vendor "Siemens" | Scalance S Firmware Search vendor "Siemens" for product "Scalance S Firmware" | 2.2.0 Search vendor "Siemens" for product "Scalance S Firmware" and version "2.2.0" | - |
Affected
| in | Siemens Search vendor "Siemens" | Scalance S613 Search vendor "Siemens" for product "Scalance S613" | v2 Search vendor "Siemens" for product "Scalance S613" and version "v2" | - |
Affected
|