A vulnerability has been identified in SCALANCE LPE9403 (All versions < V2.1). A path traversal vulnerability was found in the `deviceinfo` binary via the `mac` parameter. This could allow an authenticated attacker with access to the SSH interface on the affected device to read the contents of any file named `address`.
2023-05-09T13:15:16.800
2024-11-21T07:52:51.343
Modified
CVSSv3.1: 2.5 (LOW)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | siemens | scalance_lpe9403_firmware | < 2.1 | Yes |
Hardware | siemens | scalance_lpe9403 | - | No |