CVE-2019-13926

EUVD-2019-5196
A vulnerability has been identified in SCALANCE S602 (All versions >= V3.0 and < V4.1), SCALANCE S612 (All versions >= V3.0 and < V4.1), SCALANCE S623 (All versions >= V3.0 and < V4.1), SCALANCE S627-2M (All versions >= V3.0 and < V4.1). Specially crafted packets sent to port 443/tcp of affected devices could cause a Denial-of-Service condition of the web server. A cold reboot is required to restore the functionality of the device.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 54%
Affected Products (NVD)
VendorProductVersion
siemensscalance_s602_firmware
3.0 ≤
𝑥
< 4.1
siemensscalance_s612_firmware
3.0 ≤
𝑥
< 4.1
siemensscalance_s623_firmware
3.0 ≤
𝑥
< 4.1
siemensscalance_s627-2m_firmware
3.0 ≤
𝑥
< 4.1
𝑥
= Vulnerable software versions