Severity
8.8HIGH
EPSS
0.3%
top 46.22%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 15
Latest updateMay 24

Description

A vulnerability has been identified in RUGGEDCOM RM1224 (All versions >= V4.3 and = V4.3 and = V4.3 and = V2.0 and < V2.1.3), SCALANCE XB-200 (All versions < V4.1), SCALANCE XC-200 (All versions < V4.1), SCALANCE XF-200BA (All versions < V4.1), SCALANCE XM400 (All versions < V6.2), SCALANCE XP-200 (All versions < V4.1), SCALANCE XR-300WG (All versions < V4.1), SCALANCE XR500 (All versions < V6.2). Affected devices contain a stack-based buffer overflow vulnerability in the handling of STP BPDU fr

CVSS vector

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9

Affected Packages26 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-p672-97f8-chmq: A vulnerability has been identified in RUGGEDCOM RM1224 (All versions >= V42022-05-24
CVEList
CVE-2021-25667: A vulnerability has been identified in RUGGEDCOM RM1224 (All versions >= V42021-03-15