PT-2018-16571 · Siemens · Siclock Tc400+1
Published
2018-07-03
·
Updated
2019-10-09
·
CVE-2018-4853
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
SICLOCK TC100 (All versions)
SICLOCK TC400 (All versions)
Description
A vulnerability has been identified that allows an attacker with network access to port 69/udp to modify the firmware of the device.
Recommendations
For SICLOCK TC100, restrict access to port 69/udp to prevent unauthorized firmware modifications.
For SICLOCK TC400, restrict access to port 69/udp to prevent unauthorized firmware modifications.
Fix
Missing Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Siclock Tc100
Siclock Tc400