CVE-2017-12736
published 2017-12-26CVE-2017-12736: After initial configuration, the Ruggedcom Discovery Protocol (RCDP) is still able to write to the device under certain conditions. This could allow an…
PriorityP347high8.8CVSS 3.1
AVAACLPRNUINSUCHIHAH
EPSS
1.00%
58.9th percentile
After initial configuration, the Ruggedcom Discovery Protocol (RCDP) is still able to write to the device under certain conditions.
This could allow an attacker located in the adjacent network of the targeted device to perform unauthorized administrative actions.
Affected
200 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| siemens | ruggedcom_i800 | < V4.3.4 | V4.3.4 |
| siemens | ruggedcom_i800nc | < V4.3.4 | V4.3.4 |
| siemens | ruggedcom_i801 | < V4.3.4 | V4.3.4 |
| siemens | ruggedcom_i801nc | < V4.3.4 | V4.3.4 |
| siemens | ruggedcom_i802 | < V4.3.4 | V4.3.4 |
| siemens | ruggedcom_i802nc | < V4.3.4 | V4.3.4 |
| siemens | ruggedcom_i803 | < V4.3.4 | V4.3.4 |
| siemens | ruggedcom_i803nc | < V4.3.4 | V4.3.4 |
| siemens | ruggedcom_m2100 | < V4.3.4 | V4.3.4 |
| siemens | ruggedcom_m2100nc | < V4.3.4 | V4.3.4 |
| siemens | ruggedcom_m2200 | < V4.3.4 | V4.3.4 |
| siemens | ruggedcom_m2200nc | < V4.3.4 | V4.3.4 |
| siemens | ruggedcom_m969 | < V4.3.4 | V4.3.4 |
| siemens | ruggedcom_m969nc | < V4.3.4 | V4.3.4 |
| siemens | ruggedcom_rmc30 | < V4.3.4 | V4.3.4 |
| siemens | ruggedcom_rmc30nc | < V4.3.4 | V4.3.4 |
| siemens | ruggedcom_rmc8388_v4.x | < V4.3.4 | V4.3.4 |
| siemens | ruggedcom_rmc8388_v5.x | < V5.0.1 | V5.0.1 |
| siemens | ruggedcom_rmc8388nc_v4.x | < V4.3.4 | V4.3.4 |
| siemens | ruggedcom_rmc8388nc_v5.x | < V5.0.1 | V5.0.1 |
| siemens | ruggedcom_ros | < 5.0.1 | 5.0.1 |
| siemens | ruggedcom_ros | < 4.3.4 | 4.3.4 |
| siemens | ruggedcom_rp110 | < V4.3.4 | V4.3.4 |
| siemens | ruggedcom_rp110nc | < V4.3.4 | V4.3.4 |
| siemens | ruggedcom_rs1600 | < V4.3.4 | V4.3.4 |
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv3.08.8HIGHCVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.05.8MEDIUMAV:A/AC:L/Au:N/C:P/I:P/A:P
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-wjv4-g95p-rg69: A vulnerability has been identified in RUGGEDCOM ROS for RSL910 devices (All versions < ROS V5
ghsa_unreviewed·2022-05-13
CVE-2017-12736 [HIGH] CWE-1188 GHSA-wjv4-g95p-rg69: A vulnerability has been identified in RUGGEDCOM ROS for RSL910 devices (All versions < ROS V5
A vulnerability has been identified in RUGGEDCOM ROS for RSL910 devices (All versions < ROS V5.0.1), RUGGEDCOM ROS for all other devices (All versions < ROS V4.3.4), SCALANCE XB-200/XC-200/XP-200/XR300-WG (All versions between V3.0 (including) and V3.0.2 (excluding)), SCALANCE XR-500/XM-400 (All versions between V6.1 (including) and V6.1.1 (excluding)). After initial configuration, the Ruggedcom Discovery Protocol (RCDP) is still able to writeto the device under certain conditions, potentially allowing users located in the adjacentnetwork of the targeted device to perform unauthorized administrative actions.
CISA ICS
Siemens Ruggedcom ROS, SCALANCE (Update B)
cisa_ics·2017-10-10
Siemens Ruggedcom ROS, SCALANCE (Update B)
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Siemens Ruggedcom ROS, SCALANCE (Update B)
Last RevisedFebruary 27, 2018
Alert CodeICSA-17-271-01B
## CVSS v3 8.8
ATTENTION: Remotely exploitable/low skill level to exploit.
Vendor: Siemens
Equipment: Ruggedcom ROS, SCALANCE
Vulnerability: Improper Access Control
## UPDATE INFORMATION
This updated advisory is a follow-up to the updated advisory titled ICSA-17-271-01A Siemens Ruggedcom ROS, SCALANCE that was published October 10, 2017, on the NCCIC/ICS-CERT website.
## AFFECTED PRODUCTS
--------- Begin Update B Part 1 of 2 --------
Siemens reports that the vulnerability a
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.securityfocus.com/bid/101041http://www.securitytracker.com/id/1039463http://www.securitytracker.com/id/1039464https://cert-portal.siemens.com/productcert/html/ssa-856721.htmlhttps://www.siemens.com/cert/pool/cert/siemens_security_advisory_ssa-856721.pdfhttp://www.securityfocus.com/bid/101041http://www.securitytracker.com/id/1039463http://www.securitytracker.com/id/1039464https://www.siemens.com/cert/pool/cert/siemens_security_advisory_ssa-856721.pdf
2017-12-26
Published