CVE-2020-28395
Severity CVSS v4.0:
Pending analysis
Type:
CWE-321
Use of Hard-coded Cryptographic Key
Publication date:
12/01/2021
Last modified:
13/12/2022
Description
A vulnerability has been identified in SCALANCE X-200RNA switch family (All versions
Impact
Base Score 3.x
5.90
Severity 3.x
MEDIUM
Base Score 2.0
4.30
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:siemens:scalance_xr324-12m_firmware:*:*:*:*:*:*:*:* | 4.1.0 (excluding) | |
| cpe:2.3:h:siemens:scalance_xr324-12m:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:siemens:scalance_xr324-12m_ts_firmware:*:*:*:*:*:*:*:* | 4.1.0 (excluding) | |
| cpe:2.3:h:siemens:scalance_xr324-12m_ts:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:siemens:scalance_xr324-4m_eec_firmware:*:*:*:*:*:*:*:* | 4.1.0 (excluding) | |
| cpe:2.3:h:siemens:scalance_xr324-4m_eec:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:siemens:scalance_xr324-4m_poe_firmware:*:*:*:*:*:*:*:* | 4.1.0 (excluding) | |
| cpe:2.3:h:siemens:scalance_xr324-4m_poe:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:siemens:scalance_xr324-4m_poe_ts_firmware:*:*:*:*:*:*:*:* | 4.1.0 (excluding) | |
| cpe:2.3:h:siemens:scalance_xr324-4m_poe_ts:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:siemens:scalance_xr324wg_firmware:*:*:*:*:*:*:*:* | 4.1.0 (excluding) | |
| cpe:2.3:h:siemens:scalance_xr324wg:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:siemens:scalance_xr326-2c_poe_wg_firmware:*:*:*:*:*:*:*:* | 4.1.0 (excluding) | |
| cpe:2.3:h:siemens:scalance_xr326-2c_poe_wg:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:siemens:scalance_xr328-4c_wg_firmware:*:*:*:*:*:*:*:* | 4.1.0 (excluding) |
To consult the complete list of CPE names with products and versions, see this page



