CVE-2014-8478
 
Severity Score
7.8
*CVSS v2
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
The web server on Siemens SCALANCE X-300 switches with firmware before 4.0 and SCALANCE X 408 switches with firmware before 4.0 allows remote attackers to cause a denial of service (reboot) via malformed HTTP requests.
El servidor web en los switches SCALANCE X-300 con firmware anteriores a 4.0 y los switches SCALANCE X 408 con firmware anterior a 4.0 permite a atacantes remotos causar una denegación de servicio (reinicio) a través de peticiones HTTP mal formadas.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2014-10-24 CVE Reserved
- 2015-01-21 CVE Published
- 2023-03-07 EPSS Updated
- 2024-08-06 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CAPEC
References (2)
URL | Tag | Source |
---|---|---|
https://cert-portal.siemens.com/productcert/pdf/ssa-321046.pdf | X_refsource_confirm |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Siemens Search vendor "Siemens" | Scalance X-300 Series Firmware Search vendor "Siemens" for product "Scalance X-300 Series Firmware" | <= 3.9.3 Search vendor "Siemens" for product "Scalance X-300 Series Firmware" and version " <= 3.9.3" | - |
Affected
| in | Siemens Search vendor "Siemens" | Scalance X-300 Search vendor "Siemens" for product "Scalance X-300" | - | - |
Safe
|
Siemens Search vendor "Siemens" | Scalance X-300 Series Firmware Search vendor "Siemens" for product "Scalance X-300 Series Firmware" | <= 3.9.3 Search vendor "Siemens" for product "Scalance X-300 Series Firmware" and version " <= 3.9.3" | - |
Affected
| in | Siemens Search vendor "Siemens" | Scalance X-300eec Search vendor "Siemens" for product "Scalance X-300eec" | - | - |
Safe
|
Siemens Search vendor "Siemens" | Scalance X-300 Series Firmware Search vendor "Siemens" for product "Scalance X-300 Series Firmware" | <= 3.9.3 Search vendor "Siemens" for product "Scalance X-300 Series Firmware" and version " <= 3.9.3" | - |
Affected
| in | Siemens Search vendor "Siemens" | Scalance X-300poe Search vendor "Siemens" for product "Scalance X-300poe" | - | - |
Safe
|
Siemens Search vendor "Siemens" | Scalance X-300 Series Firmware Search vendor "Siemens" for product "Scalance X-300 Series Firmware" | <= 3.9.3 Search vendor "Siemens" for product "Scalance X-300 Series Firmware" and version " <= 3.9.3" | - |
Affected
| in | Siemens Search vendor "Siemens" | Scalance Xr-300 Search vendor "Siemens" for product "Scalance Xr-300" | - | - |
Safe
|
Siemens Search vendor "Siemens" | Scalance X-300 Series Firmware Search vendor "Siemens" for product "Scalance X-300 Series Firmware" | <= 3.9.3 Search vendor "Siemens" for product "Scalance X-300 Series Firmware" and version " <= 3.9.3" | - |
Affected
| in | Siemens Search vendor "Siemens" | Scalance Xr-300eec Search vendor "Siemens" for product "Scalance Xr-300eec" | - | - |
Safe
|
Siemens Search vendor "Siemens" | Scalance X-300 Series Firmware Search vendor "Siemens" for product "Scalance X-300 Series Firmware" | <= 3.9.3 Search vendor "Siemens" for product "Scalance X-300 Series Firmware" and version " <= 3.9.3" | - |
Affected
| in | Siemens Search vendor "Siemens" | Scalance Xr-300poe Search vendor "Siemens" for product "Scalance Xr-300poe" | - | - |
Safe
|
Siemens Search vendor "Siemens" | Scalance X-408 Firmware Search vendor "Siemens" for product "Scalance X-408 Firmware" | <= 3.9.3 Search vendor "Siemens" for product "Scalance X-408 Firmware" and version " <= 3.9.3" | - |
Affected
| in | Siemens Search vendor "Siemens" | Scalance X-408 Search vendor "Siemens" for product "Scalance X-408" | * | - |
Safe
|