CVE-2017-11400
published 2017-11-20CVE-2017-11400: An issue has been discovered on the Belden Hirschmann Tofino Xenon Security Appliance before 03.2.00. An incomplete firmware signature allows a local attacker…
PriorityP425medium6.8CVSS 3.0
AVPACLPRNUINSUCHIHAH
EPSS
0.27%
19.1th percentile
An issue has been discovered on the Belden Hirschmann Tofino Xenon Security Appliance before 03.2.00. An incomplete firmware signature allows a local attacker to upgrade the equipment (kernel, file system) with unsigned, attacker-controlled, data. This occurs because the appliance_config file is signed but the .tar.sec file is unsigned.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| belden | tofino_xenon_security_appliance_firmware | < 03.2.03 | 03.2.03 |
| belden | tofino_xenon_security_appliance_firmware | <= 3.1.0 | — |
| schneider-electric | tcsefea23f3f22_firmware | < 03.23 | 03.23 |
CVSS provenance
nvdv3.06.8MEDIUMCVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-mrc4-5458-65m9: An issue has been discovered on the Belden Hirschmann Tofino Xenon Security Appliance before 03
ghsa_unreviewed·2022-05-13
CVE-2017-11400 [HIGH] CWE-347 GHSA-mrc4-5458-65m9: An issue has been discovered on the Belden Hirschmann Tofino Xenon Security Appliance before 03
An issue has been discovered on the Belden Hirschmann Tofino Xenon Security Appliance before 03.2.00. An incomplete firmware signature allows a local attacker to upgrade the equipment (kernel, file system) with unsigned, attacker-controlled, data. This occurs because the appliance_config file is signed but the .tar.sec file is unsigned.
GHSA
GHSA-j2pq-xrmc-f4r4: On Schneider Electric ConneXium Tofino Firewall TCSEFEA23F3F22 before 03
ghsa_unreviewed·2022-04-05·CVSS 6.8
CVE-2021-30066 [MEDIUM] CWE-347 GHSA-j2pq-xrmc-f4r4: On Schneider Electric ConneXium Tofino Firewall TCSEFEA23F3F22 before 03
On Schneider Electric ConneXium Tofino Firewall TCSEFEA23F3F22 before 03.23, TCSEFEA23F3F20/21, and Belden Tofino Xenon Security Appliance, an arbitrary firmware image can be loaded because firmware signature verification (for a USB stick) can be bypassed. NOTE: this issue exists because of an incomplete fix of CVE-2017-11400.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://github.com/airbus-seclab/security-advisories/blob/master/belden/tofino.txthttps://www.belden.com/hubfs/support/security/bulletins/Belden-Security-Bulletin-BSECV-2017-14-1v1-1.pdfhttps://github.com/airbus-seclab/security-advisories/blob/master/belden/tofino.txthttps://www.belden.com/hubfs/support/security/bulletins/Belden-Security-Bulletin-BSECV-2017-14-1v1-1.pdf
2017-11-20
Published