CVE-2015-1357: Infoleak
Siemens Ruggedcom WIN51xx devices with firmware before SS4.4.4624.35, WIN52xx devices with firmware before SS4.4.4624.35, WIN70xx devices with firmware before BS4.4.4621.32, and WIN72xx devices with firmware before BS4.4.4621.32 allow context-dependent attackers to discover password hashes by reading (1) files or (2) security logs.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-1357?
CVE-2015-1357 is classified as a medium severity vulnerability that could allow attackers to discover password hashes.
How do I fix CVE-2015-1357?
To mitigate CVE-2015-1357, update the firmware of affected Siemens Ruggedcom devices to versions SS4.4.4624.35 or BS4.4.4621.32 or later.
Which Siemens Ruggedcom devices are affected by CVE-2015-1357?
CVE-2015-1357 affects WIN51xx and WIN52xx devices with firmware before SS4.4.4624.35, and WIN70xx and WIN72xx devices with firmware before BS4.4.4621.32.
Can CVE-2015-1357 lead to unauthorized access?
Yes, CVE-2015-1357 can potentially lead to unauthorized access if attackers successfully retrieve password hashes.
Is there a patch available for CVE-2015-1357?
Yes, Siemens has released firmware updates for the affected devices to address the vulnerability described in CVE-2015-1357.