// For flags

CVE-2021-25676

 

Severity Score

7.5
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

A vulnerability has been identified in RUGGEDCOM RM1224 (V6.3), SCALANCE M-800 (V6.3), SCALANCE S615 (V6.3), SCALANCE SC-600 (All Versions >= V2.1 and < V2.1.3). Multiple failed SSH authentication attempts could trigger a temporary Denial-of-Service under certain conditions. When triggered, the device will reboot automatically.

Se ha identificado una vulnerabilidad en RUGGEDCOM RM1224 (versión V6.3), SCALANCE M-800 (versión V6.3), SCALANCE S615 (versión V6.3), SCALANCE SC-600 (Todas las versiones posteriores a V2.1 y anteriores a V2.1.3) .&#xa0;Múltiples intentos fallidos de autenticación SSH podrían desencadenar una Denegación de Servicio temporal en determinadas condiciones.&#xa0;Cuando es desencadenada, el dispositivo se reiniciará automáticamente

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
None
Integrity
None
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2021-01-21 CVE Reserved
  • 2021-03-15 CVE Published
  • 2023-11-29 EPSS Updated
  • 2024-08-03 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-307: Improper Restriction of Excessive Authentication Attempts
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Siemens
Search vendor "Siemens"
Ruggedcom Rm1224 Firmware
Search vendor "Siemens" for product "Ruggedcom Rm1224 Firmware"
6.3
Search vendor "Siemens" for product "Ruggedcom Rm1224 Firmware" and version "6.3"
-
Affected
in Siemens
Search vendor "Siemens"
Ruggedcom Rm1224
Search vendor "Siemens" for product "Ruggedcom Rm1224"
--
Safe
Siemens
Search vendor "Siemens"
Scalance M-800 Firmware
Search vendor "Siemens" for product "Scalance M-800 Firmware"
6.3
Search vendor "Siemens" for product "Scalance M-800 Firmware" and version "6.3"
-
Affected
in Siemens
Search vendor "Siemens"
Scalance M-800
Search vendor "Siemens" for product "Scalance M-800"
--
Safe
Siemens
Search vendor "Siemens"
Scalance S615 Firmware
Search vendor "Siemens" for product "Scalance S615 Firmware"
6.3
Search vendor "Siemens" for product "Scalance S615 Firmware" and version "6.3"
-
Affected
in Siemens
Search vendor "Siemens"
Scalance S615
Search vendor "Siemens" for product "Scalance S615"
--
Safe
Siemens
Search vendor "Siemens"
Scalance Sc-600 Firmware
Search vendor "Siemens" for product "Scalance Sc-600 Firmware"
>= 2.1 < 2.1.3
Search vendor "Siemens" for product "Scalance Sc-600 Firmware" and version " >= 2.1 < 2.1.3"
-
Affected
in Siemens
Search vendor "Siemens"
Scalance Sc-600
Search vendor "Siemens" for product "Scalance Sc-600"
--
Safe