CVE-2017-9942: High severity sipass integrated vulnerability
Published Aug 8, 2017
·Updated
A vulnerability was discovered in Siemens SiPass integrated (All versions before V2.70) that could allow an attacker with local access to the SiPass integrated server or SiPass integrated client to potentially obtain credentials from the systems.
Affected Software
1 affected component
Siemens SiPass integrated<=2.65
Event History
Aug 8, 2017
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-9942?
CVE-2017-9942 is classified as a medium severity vulnerability due to its potential impact on credential security.
2
How do I fix CVE-2017-9942?
To fix CVE-2017-9942, upgrade to Siemens SiPass integrated version 2.70 or later.
3
Who is affected by CVE-2017-9942?
CVE-2017-9942 affects all versions of Siemens SiPass integrated prior to version 2.70.
4
What kind of access is required to exploit CVE-2017-9942?
An attacker must have local access to the SiPass integrated server or client to exploit CVE-2017-9942.
5
What are the consequences of exploiting CVE-2017-9942?
Exploiting CVE-2017-9942 can potentially allow an attacker to obtain credentials from the SiPass integrated systems.