CVE-2018-25237: Hirschmann HiSecOS Buffer Overflow via HTTPS Login
Hirschmann HiSecOS devices versions prior to 05.3.03 contain a buffer overflow vulnerability in the HTTPS login interface when RADIUS authentication is enabled that allows remote attackers to crash the device or execute arbitrary code by submitting a password longer than 128 characters. Attackers can exploit improper bounds checking in password handling to overflow a fixed-size buffer and achieve denial of service or remote code execution.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Hirschmann HiSecOSto a version that resolves this vulnerability.Fixed in 05.3.03 - Compensating control
If upgrading is not immediately possible, mitigate exposure by preventing remote access to the HTTPS login interface where RADIUS authentication is enabled (e.g., restrict management/HTTPS login access via network controls such as firewall/ACL to trusted sources only).
Event History
Frequently Asked Questions
What is the severity of CVE-2018-25237?
CVE-2018-25237 is classified as a high severity vulnerability due to its potential to allow remote code execution.
How do I fix CVE-2018-25237?
To fix CVE-2018-25237, upgrade your Hirschmann HiSecOS devices to version 05.3.03 or later.
What devices are affected by CVE-2018-25237?
CVE-2018-25237 affects Hirschmann HiSecOS devices running versions prior to 05.3.03.
What type of attack can exploit CVE-2018-25237?
CVE-2018-25237 can be exploited through a buffer overflow attack via the HTTPS login interface when RADIUS authentication is enabled.
Can CVE-2018-25237 lead to device crashes?
Yes, CVE-2018-25237 allows attackers to potentially crash the device as well as execute arbitrary code.