CVE-2022-36324
published 2022-08-10CVE-2022-36324: Affected devices do not properly handle the renegotiation of SSL/TLS parameters. This could allow an unauthenticated remote attacker to bypass the TCP brute…
PriorityP341high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
1.47%
70.7th percentile
Affected devices do not properly handle the renegotiation of SSL/TLS parameters. This could allow an unauthenticated remote attacker to bypass the TCP brute force prevention and lead to a denial of service condition for the duration of the attack.
Affected
92 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| siemens | ruggedcom_rm1224_lte_eu | < V7.1.2 | V7.1.2 |
| siemens | ruggedcom_rm1224_lte_nam | < V7.1.2 | V7.1.2 |
| siemens | scalance_m804pb | < V7.1.2 | V7.1.2 |
| siemens | scalance_m812-1_adsl-router | < V7.1.2 | V7.1.2 |
| siemens | scalance_m816-1_adsl-router | < V7.1.2 | V7.1.2 |
| siemens | scalance_m826-2_shdsl-router | < V7.1.2 | V7.1.2 |
| siemens | scalance_m874-2 | < V7.1.2 | V7.1.2 |
| siemens | scalance_m874-3 | < V7.1.2 | V7.1.2 |
| siemens | scalance_m876-3 | < V7.1.2 | V7.1.2 |
| siemens | scalance_m876-4 | < V7.1.2 | V7.1.2 |
| siemens | scalance_mum853-1 | < V7.1.2 | V7.1.2 |
| siemens | scalance_mum856-1 | < V7.1.2 | V7.1.2 |
| siemens | scalance_s615_lan-router | < V7.1.2 | V7.1.2 |
| siemens | scalance_sc622-2c | < V2.3.1 | V2.3.1 |
| siemens | scalance_sc626-2c | < V2.3.1 | V2.3.1 |
| siemens | scalance_sc632-2c | < V2.3.1 | V2.3.1 |
| siemens | scalance_sc636-2c | < V2.3.1 | V2.3.1 |
| siemens | scalance_sc642-2c | < V2.3.1 | V2.3.1 |
| siemens | scalance_sc646-2c | < V2.3.1 | V2.3.1 |
| siemens | scalance_w1748-1_m12 | < * | * |
| siemens | scalance_w1788-1_m12 | < * | * |
| siemens | scalance_w1788-2_eec_m12 | < * | * |
| siemens | scalance_w1788-2_m12 | < * | * |
| siemens | scalance_w1788-2ia_m12 | < * | * |
| siemens | scalance_w721-1_rj45 | < V6.6.0 | V6.6.0 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
CISA ICS
Siemens SCALANCE (Update A)
cisa_ics·2022-08-11
Siemens SCALANCE (Update A)
ICS Advisory
##
Siemens SCALANCE (Update A)
Last RevisedJanuary 13, 2023
Alert CodeICSA-22-223-07
As of January 10, 2023, CISA will no longer be updating ICS security advisories for Siemens product vulnerabilities beyond the initial advisory. For the most up-to-date information on vulnerabilities in this advisory, please see Siemens' ProductCERT Security Advisories (CERT Services | Services | Siemens Global).
## 1. EXECUTIVE SUMMARY
- CVSS v3 9.1
- ATTENTION: Exploitable remotely/low attack complexity
- Vendor: Siemens
- Equipment: SCALANCE
- Vulnerabilities: Improper Neutralization of Special Elements in Output Used by a Downstream Component (‘Injection’), Allocation of Resources Without Limits or Throttling, Basic Cross Site Scripting
## 2. UPDATE INFORMATI
GHSA
GHSA-hm3h-qvm3-r8qv: A vulnerability has been identified in SCALANCE M-800 / S615 (All versions), SCALANCE W-1700 IEEE 802
ghsa_unreviewed·2022-08-11
CVE-2022-36324 [HIGH] CWE-770 GHSA-hm3h-qvm3-r8qv: A vulnerability has been identified in SCALANCE M-800 / S615 (All versions), SCALANCE W-1700 IEEE 802
A vulnerability has been identified in SCALANCE M-800 / S615 (All versions), SCALANCE W-1700 IEEE 802.11ac family (All versions), SCALANCE W-700 IEEE 802.11ax family (All versions), SCALANCE W-700 IEEE 802.11n family (All versions), SCALANCE XB-200 switch family (All versions), SCALANCE XC-200 switch family (All versions), SCALANCE XF-200BA switch family (All versions), SCALANCE XM-400 Family (All versions), SCALANCE XP-200 switch family (All versions), SCALANCE XR-300WG switch family (All versions), SCALANCE XR-500 Family (All versions). Affected devices do not properly handle the renegotiation of SSL/TLS parameters. This could allow an unauthenticated remote attacker to bypass the TCP brute force prevention and lead to a denial of service condition for the duration of the attack.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-08-10
Published