CVE-2019-10930
Severity CVSS v4.0:
Pending analysis
Type:
CWE-434
Unrestricted Upload of File with Dangerous Type
Publication date:
11/07/2019
Last modified:
10/06/2020
Description
A vulnerability has been identified in All other SIPROTEC 5 device types with CPU variants CP300 and CP100 and the respective Ethernet communication modules (All versions ), DIGSI 5 engineering software (All versions
Impact
Base Score 3.x
7.50
Severity 3.x
HIGH
Base Score 2.0
6.40
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:siemens:digsi_5_engineering_software:7.90:*:*:*:*:*:*:* | ||
cpe:2.3:a:siemens:siprotec_5_digsi_device_driver:7.90:*:*:*:*:*:*:* | ||
cpe:2.3:h:siemens:6md85:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:siemens:6md86:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:siemens:6md89:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:siemens:7sa82:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:siemens:7sa86:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:siemens:7sa87:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:siemens:7sd82:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:siemens:7sd86:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:siemens:7sd87:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:siemens:7sj82:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:siemens:7sj85:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:siemens:7sj86:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:siemens:7sk82:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page