CVE-2022-36324
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
10/08/2022
Last modified:
23/02/2023
Description
Affected devices do not properly handle the renegotiation of SSL/TLS parameters. This could allow an unauthenticated remote attacker to bypass the TCP brute force prevention and lead to a denial of service condition for the duration of the attack.
Impact
Base Score 3.x
7.50
Severity 3.x
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:siemens:scalance_m-800_firmware:*:*:*:*:*:*:*:* | ||
| cpe:2.3:h:siemens:scalance_m-800:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:siemens:scalance_s615_firmware:*:*:*:*:*:*:*:* | ||
| cpe:2.3:h:siemens:scalance_s615:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:siemens:scalance_w700_ieee_802.11ax_firmware:*:*:*:*:*:*:*:* | ||
| cpe:2.3:h:siemens:scalance_w700_ieee_802.11ax:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:siemens:scalance_w700_ieee_802.11n_firmware:*:*:*:*:*:*:*:* | ||
| cpe:2.3:h:siemens:scalance_w700_ieee_802.11n:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:siemens:scalance_w700_ieee_802.11ac_firmware:*:*:*:*:*:*:*:* | ||
| cpe:2.3:h:siemens:scalance_w700_ieee_802.11ac:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:siemens:scalance_xb-200_firmware:*:*:*:*:*:*:*:* | ||
| cpe:2.3:h:siemens:scalance_xb-200:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:siemens:scalance_xb205-3_firmware:*:*:*:*:*:*:*:* | ||
| cpe:2.3:h:siemens:scalance_xb205-3:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:siemens:scalance_xb205-3ld_firmware:*:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



