Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The authentication implementation in the web server on Siemens SCALANCE X-200 switches with firmware before 5.0.0 does not use a sufficient source of entropy for generating values of random numbers, which makes it easier for remote attackers to hijack sessions by predicting a value.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Siemens Scalance X-200 Series Switches 随机数生成器漏洞
Vulnerability Description
Siemens Scalance X-200 Series是德国西门子(Siemens)公司的管理型工业以太网交换机设备。 使用4.4及之前版本固件的Siemens SCALANCE X-200交换机的Web服务器中存在随机数生成器漏洞。远程攻击者可通过预测随机数的值来利用该漏洞劫持Web会话,在未授权的情况下访问应用程序。
CVSS Information
N/A
Vulnerability Type
N/A