#VU13343 Privilege escalation in Siemens products - CVE-2018-4833
Published: June 14, 2018 / Updated: June 15, 2018
RUGGEDCOM WiMAX
SIMATIC RF182C
SCALANCE X414
SCALANCE X-408
SCALANCE X-300
SCALANCE X-204RNA
RFID 181-EIP
SCALANCE X-200 IRT
SCALANCE X-200
Siemens
Description
The vulnerability allows an adjacent attacker to gain elevated privileges on the target system.
The vulnerability exists due to insufficient validation of user-supplied input. An adjacent attacker can send a specially crafted DHCP response to a client’s DHCP request and execute arbitrary code with elevated privileges.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.