Support Us — Your donation helps us keep running

Goal: 1000 CNY,Raised: 1000 CNY

100.0%
Get alerts for future matching vulnerabilitiesLog in to subscribe
I. Basic Information for CVE-2019-13933
Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
A vulnerability has been identified in SCALANCE X204RNA (HSR), SCALANCE X204RNA (PRP), SCALANCE X204RNA EEC (HSR), SCALANCE X204RNA EEC (PRP), SCALANCE X204RNA EEC (PRP/HSR), SCALANCE X302-7 EEC (230V), SCALANCE X302-7 EEC (230V, coated), SCALANCE X302-7 EEC (24V), SCALANCE X302-7 EEC (24V, coated), SCALANCE X302-7 EEC (2x 230V), SCALANCE X302-7 EEC (2x 230V, coated), SCALANCE X302-7 EEC (2x 24V), SCALANCE X302-7 EEC (2x 24V, coated), SCALANCE X304-2FE, SCALANCE X306-1LD FE, SCALANCE X307-2 EEC (230V), SCALANCE X307-2 EEC (230V, coated), SCALANCE X307-2 EEC (24V), SCALANCE X307-2 EEC (24V, coated), SCALANCE X307-2 EEC (2x 230V), SCALANCE X307-2 EEC (2x 230V, coated), SCALANCE X307-2 EEC (2x 24V), SCALANCE X307-2 EEC (2x 24V, coated), SCALANCE X307-3, SCALANCE X307-3, SCALANCE X307-3LD, SCALANCE X307-3LD, SCALANCE X308-2, SCALANCE X308-2, SCALANCE X308-2LD, SCALANCE X308-2LD, SCALANCE X308-2LH, SCALANCE X308-2LH, SCALANCE X308-2LH+, SCALANCE X308-2LH+, SCALANCE X308-2M, SCALANCE X308-2M, SCALANCE X308-2M PoE, SCALANCE X308-2M PoE, SCALANCE X308-2M TS, SCALANCE X308-2M TS, SCALANCE X310, SCALANCE X310, SCALANCE X310FE, SCALANCE X310FE, SCALANCE X320-1 FE, SCALANCE X320-1-2LD FE, SCALANCE X408-2, SCALANCE XR324-12M (230V, ports on front), SCALANCE XR324-12M (230V, ports on front), SCALANCE XR324-12M (230V, ports on rear), SCALANCE XR324-12M (230V, ports on rear), SCALANCE XR324-12M (24V, ports on front), SCALANCE XR324-12M (24V, ports on front), SCALANCE XR324-12M (24V, ports on rear), SCALANCE XR324-12M (24V, ports on rear), SCALANCE XR324-12M TS (24V), SCALANCE XR324-12M TS (24V), SCALANCE XR324-4M EEC (100-240VAC/60-250VDC, ports on front), SCALANCE XR324-4M EEC (100-240VAC/60-250VDC, ports on front), SCALANCE XR324-4M EEC (100-240VAC/60-250VDC, ports on rear), SCALANCE XR324-4M EEC (100-240VAC/60-250VDC, ports on rear), SCALANCE XR324-4M EEC (24V, ports on front), SCALANCE XR324-4M EEC (24V, ports on front), SCALANCE XR324-4M EEC (24V, ports on rear), SCALANCE XR324-4M EEC (24V, ports on rear), SCALANCE XR324-4M EEC (2x 100-240VAC/60-250VDC, ports on front), SCALANCE XR324-4M EEC (2x 100-240VAC/60-250VDC, ports on front), SCALANCE XR324-4M EEC (2x 100-240VAC/60-250VDC, ports on rear), SCALANCE XR324-4M EEC (2x 100-240VAC/60-250VDC, ports on rear), SCALANCE XR324-4M EEC (2x 24V, ports on front), SCALANCE XR324-4M EEC (2x 24V, ports on front), SCALANCE XR324-4M EEC (2x 24V, ports on rear), SCALANCE XR324-4M EEC (2x 24V, ports on rear), SCALANCE XR324-4M PoE (230V, ports on front), SCALANCE XR324-4M PoE (230V, ports on rear), SCALANCE XR324-4M PoE (24V, ports on front), SCALANCE XR324-4M PoE (24V, ports on rear), SCALANCE XR324-4M PoE TS (24V, ports on front), SIPLUS NET SCALANCE X308-2. Affected devices contain a vulnerability that allows an unauthenticated attacker to violate access-control rules. The vulnerability can be triggered by sending GET request to specific uniform resource locator on the web configuration interface of the device. The security vulnerability could be exploited by an attacker with network access to the affected systems. An attacker could use the vulnerability to obtain sensitive information or change the device configuration. At the time of advisory publication no public exploitation of this security vulnerability was known.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
关键功能的认证机制缺失
Source: NVD (National Vulnerability Database)
Vulnerability Title
Siemens Scalance X-200系列和Scalance X-300系列访问控制错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Siemens Scalance X-200是德国西门子(Siemens)公司的一款工业级以太网交换机。 Siemens Scalance X-200RNA系列和Scalance X-300系列(包括:X408和SIPLUS NET变体)中存在访问控制错误漏洞。攻击者可利用该漏洞获取敏感信息或修改设备配置。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)
Affected Products
VendorProductAffected VersionsCPESubscribe
SiemensSCALANCE X204RNA (HSR) All versions < V3.2.7 -
SiemensSCALANCE X204RNA (PRP) All versions < V3.2.7 -
SiemensSCALANCE X204RNA EEC (HSR) All versions < V3.2.7 -
SiemensSCALANCE X204RNA EEC (PRP) All versions < V3.2.7 -
SiemensSCALANCE X204RNA EEC (PRP/HSR) All versions < V3.2.7 -
SiemensSCALANCE X302-7 EEC (230V) All versions < V4.1.3 -
SiemensSCALANCE X302-7 EEC (230V, coated) All versions < V4.1.3 -
SiemensSCALANCE X302-7 EEC (24V) All versions < V4.1.3 -
SiemensSCALANCE X302-7 EEC (24V, coated) All versions < V4.1.3 -
SiemensSCALANCE X302-7 EEC (2x 230V) All versions < V4.1.3 -
SiemensSCALANCE X302-7 EEC (2x 230V, coated) All versions < V4.1.3 -
SiemensSCALANCE X302-7 EEC (2x 24V) All versions < V4.1.3 -
SiemensSCALANCE X302-7 EEC (2x 24V, coated) All versions < V4.1.3 -
SiemensSCALANCE X304-2FE All versions < V4.1.3 -
SiemensSCALANCE X306-1LD FE All versions < V4.1.3 -
SiemensSCALANCE X307-2 EEC (230V) All versions < V4.1.3 -
SiemensSCALANCE X307-2 EEC (230V, coated) All versions < V4.1.3 -
SiemensSCALANCE X307-2 EEC (24V) All versions < V4.1.3 -
SiemensSCALANCE X307-2 EEC (24V, coated) All versions < V4.1.3 -
SiemensSCALANCE X307-2 EEC (2x 230V) All versions < V4.1.3 -
SiemensSCALANCE X307-2 EEC (2x 230V, coated) All versions < V4.1.3 -
SiemensSCALANCE X307-2 EEC (2x 24V) All versions < V4.1.3 -
SiemensSCALANCE X307-2 EEC (2x 24V, coated) All versions < V4.1.3 -
SiemensSCALANCE X307-3 All versions < V4.1.3 -
SiemensSCALANCE X307-3 All versions < V4.1.3 -
SiemensSCALANCE X307-3LD All versions < V4.1.3 -
SiemensSCALANCE X307-3LD All versions < V4.1.3 -
SiemensSCALANCE X308-2 All versions < V4.1.3 -
SiemensSCALANCE X308-2 All versions < V4.1.3 -
SiemensSCALANCE X308-2LD All versions < V4.1.3 -
SiemensSCALANCE X308-2LD All versions < V4.1.3 -
SiemensSCALANCE X308-2LH All versions < V4.1.3 -
SiemensSCALANCE X308-2LH All versions < V4.1.3 -
SiemensSCALANCE X308-2LH+ All versions < V4.1.3 -
SiemensSCALANCE X308-2LH+ All versions < V4.1.3 -
SiemensSCALANCE X308-2M All versions < V4.1.3 -
SiemensSCALANCE X308-2M All versions < V4.1.3 -
SiemensSCALANCE X308-2M PoE All versions < V4.1.3 -
SiemensSCALANCE X308-2M PoE All versions < V4.1.3 -
SiemensSCALANCE X308-2M TS All versions < V4.1.3 -
SiemensSCALANCE X308-2M TS All versions < V4.1.3 -
SiemensSCALANCE X310 All versions < V4.1.3 -
SiemensSCALANCE X310 All versions < V4.1.3 -
SiemensSCALANCE X310FE All versions < V4.1.3 -
SiemensSCALANCE X310FE All versions < V4.1.3 -
SiemensSCALANCE X320-1 FE All versions < V4.1.3 -
SiemensSCALANCE X320-1-2LD FE All versions < V4.1.3 -
SiemensSCALANCE X408-2 All versions < V4.1.3 -
SiemensSCALANCE XR324-12M (230V, ports on front) All versions < V4.1.3 -
SiemensSCALANCE XR324-12M (230V, ports on front) All versions < V4.1.3 -
SiemensSCALANCE XR324-12M (230V, ports on rear) All versions < V4.1.3 -
SiemensSCALANCE XR324-12M (230V, ports on rear) All versions < V4.1.3 -
SiemensSCALANCE XR324-12M (24V, ports on front) All versions < V4.1.3 -
SiemensSCALANCE XR324-12M (24V, ports on front) All versions < V4.1.3 -
SiemensSCALANCE XR324-12M (24V, ports on rear) All versions < V4.1.3 -
SiemensSCALANCE XR324-12M (24V, ports on rear) All versions < V4.1.3 -
SiemensSCALANCE XR324-12M TS (24V) All versions < V4.1.3 -
SiemensSCALANCE XR324-12M TS (24V) All versions < V4.1.3 -
SiemensSCALANCE XR324-4M EEC (100-240VAC/60-250VDC, ports on front) All versions < V4.1.3 -
SiemensSCALANCE XR324-4M EEC (100-240VAC/60-250VDC, ports on front) All versions < V4.1.3 -
SiemensSCALANCE XR324-4M EEC (100-240VAC/60-250VDC, ports on rear) All versions < V4.1.3 -
SiemensSCALANCE XR324-4M EEC (100-240VAC/60-250VDC, ports on rear) All versions < V4.1.3 -
SiemensSCALANCE XR324-4M EEC (24V, ports on front) All versions < V4.1.3 -
SiemensSCALANCE XR324-4M EEC (24V, ports on front) All versions < V4.1.3 -
SiemensSCALANCE XR324-4M EEC (24V, ports on rear) All versions < V4.1.3 -
SiemensSCALANCE XR324-4M EEC (24V, ports on rear) All versions < V4.1.3 -
SiemensSCALANCE XR324-4M EEC (2x 100-240VAC/60-250VDC, ports on front) All versions < V4.1.3 -
SiemensSCALANCE XR324-4M EEC (2x 100-240VAC/60-250VDC, ports on front) All versions < V4.1.3 -
SiemensSCALANCE XR324-4M EEC (2x 100-240VAC/60-250VDC, ports on rear) All versions < V4.1.3 -
SiemensSCALANCE XR324-4M EEC (2x 100-240VAC/60-250VDC, ports on rear) All versions < V4.1.3 -
SiemensSCALANCE XR324-4M EEC (2x 24V, ports on front) All versions < V4.1.3 -
SiemensSCALANCE XR324-4M EEC (2x 24V, ports on front) All versions < V4.1.3 -
SiemensSCALANCE XR324-4M EEC (2x 24V, ports on rear) All versions < V4.1.3 -
SiemensSCALANCE XR324-4M EEC (2x 24V, ports on rear) All versions < V4.1.3 -
SiemensSCALANCE XR324-4M PoE (230V, ports on front) All versions < V4.1.3 -
SiemensSCALANCE XR324-4M PoE (230V, ports on rear) All versions < V4.1.3 -
SiemensSCALANCE XR324-4M PoE (24V, ports on front) All versions < V4.1.3 -
SiemensSCALANCE XR324-4M PoE (24V, ports on rear) All versions < V4.1.3 -
SiemensSCALANCE XR324-4M PoE TS (24V, ports on front) All versions < V4.1.3 -
SiemensSIPLUS NET SCALANCE X308-2 All versions < V4.1.3 -
II. Public POCs for CVE-2019-13933
#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC
III. Intelligence Information for CVE-2019-13933
Please Login to view more intelligence information
New Vulnerabilities
V. Comments for CVE-2019-13933

No comments yet


Leave a comment