CVE-2015-1049

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
02/02/2015
Last modified:
12/04/2025

Description

The web server on Siemens SCALANCE X-200IRT switches with firmware before 5.2.0 allows remote attackers to hijack sessions via unspecified vectors.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:siemens:scalance_x-200_series_firmware:*:*:*:*:*:*:*:* 5.1.1 (including)
cpe:2.3:h:siemens:scalance_x201-3p_irt_pro:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_x201-3pirt:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_x202-2irt:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_x202-2p_irt:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_x202-2p_irt_pro:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_x202-4p_irt:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_x204irt:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_x204irt_pro:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xf204irt:*:*:*:*:*:*:*:*