CVE-2017-9941

Severity CVSS v4.0:
Pending analysis
Type:
CWE-300 Channel Accessible by Non-Endpoint
Publication date:
08/08/2017
Last modified:
20/04/2025

Description

A vulnerability was discovered in Siemens SiPass integrated (All versions before V2.70) that could allow an attacker in a Man-in-the-Middle position between the SiPass integrated server and SiPass integrated clients to read or modify the network communication.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:siemens:sipass_integrated:*:sp2:*:*:*:*:*:* 2.65 (including)