CVE-2013-6925: High severity Siemens Ruggedcom Rugged Operating System vulnerability
Published Dec 17, 2013
·Updated
The integrated HTTPS server in Siemens RuggedCom ROS before 3.12.2 allows remote attackers to hijack web sessions by predicting a session id value.
Affected Software
1 affected component
Siemens Ruggedcom Rugged Operating System<3.12.2
Event History
Dec 17, 2013
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Data Sourced
via NVD·04:46 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2013-6925?
CVE-2013-6925 is considered a critical vulnerability as it allows remote attackers to hijack web sessions.
2
How do I fix CVE-2013-6925?
To fix CVE-2013-6925, upgrade the Siemens RuggedCom ROS to version 3.12.2 or later.
3
Who is affected by CVE-2013-6925?
CVE-2013-6925 affects users of Siemens RuggedCom Rugged Operating System versions prior to 3.12.2.
4
What type of attacks can result from CVE-2013-6925?
CVE-2013-6925 can result in session hijacking attacks, allowing unauthorized access to user sessions.
5
Is there a workaround for CVE-2013-6925?
There are no known workarounds for mitigating CVE-2013-6925; updating to a secure version is recommended.