Security restrictions bypass in Scalance X Switches Firmware and RUGGEDCOM ROS - CVE-2017-12736

 

Security restrictions bypass in Scalance X Switches Firmware and RUGGEDCOM ROS - CVE-2017-12736

Published: October 4, 2017


Vulnerability identifier: #VU8670
CSH Severity: Low
CVSS v4: 8.7 [CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2017-12736
CWE-ID: CWE-284
Exploitation vector: Adjecent network
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a adjacent attacker to bypass security restrictions on the target system.

The weakness exists due to improper access controls in the RCDP implementation that is used by Siemens Ruggedcom ROS-based devices and Siemens Scalance X switch models. An adjacent attacker on the same collision or broadcast domain as the target system can bypass security restrictions, gain unauthorized access and perform administrative actions.

Affected software

Scalance X Switches Firmware
RUGGEDCOM ROS

How to mitigate CVE-2017-12736

Update RUGGEDCOM ROS to version 4.3.4 or 5.0.1.
Update Scalance X Switches Firmware to version 3.0 or 6.1.


External References

Related Security Bulletins