CVE-2013-4651: Medium severity Siemens Scalance W700 Series Firmware vulnerability
Siemens Scalance W7xx devices with firmware before 4.5.4 use the same hardcoded X.509 certificate across different customers' installations, which makes it easier for remote attackers to conduct man-in-the-middle attacks against SSL sessions by leveraging the certificate's trust relationship.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-4651?
CVE-2013-4651 is considered a high-severity vulnerability due to its potential for man-in-the-middle attacks.
How do I fix CVE-2013-4651?
To fix CVE-2013-4651, update the firmware of the affected Siemens Scalance W7xx devices to version 4.5.4 or later.
What devices are affected by CVE-2013-4651?
CVE-2013-4651 affects multiple Siemens Scalance W7xx devices running firmware versions prior to 4.5.4.
What type of attack can exploit CVE-2013-4651?
CVE-2013-4651 can be exploited to conduct man-in-the-middle attacks on SSL sessions.
Is CVE-2013-4651 an attack vector for unauthorized access?
Yes, CVE-2013-4651 may allow attackers to intercept and manipulate communications, leading to unauthorized access.