PT-2024-8731 · Siemens · Scalance M812-1+14
Published
2024-11-12
·
Updated
2024-11-13
·
CVE-2024-50561
CVSS v3.1
6.1
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
RUGGEDCOM RM1224 LTE(4G) EU versions prior to V8.2
RUGGEDCOM RM1224 LTE(4G) NAM versions prior to V8.2
SCALANCE M804PB versions prior to V8.2
SCALANCE M812-1 ADSL-Router versions prior to V8.2
SCALANCE M816-1 ADSL-Router versions prior to V8.2
SCALANCE M826-2 SHDSL-Router versions prior to V8.2
SCALANCE M874-2 versions prior to V8.2
SCALANCE M874-3 versions prior to V8.2
SCALANCE M874-3 3G-Router (CN) versions prior to V8.2
SCALANCE M876-3 versions prior to V8.2
SCALANCE M876-3 (ROK) versions prior to V8.2
SCALANCE M876-4 versions prior to V8.2
SCALANCE M876-4 (EU) versions prior to V8.2
SCALANCE M876-4 (NAM) versions prior to V8.2
SCALANCE MUM853-1 (A1) versions prior to V8.2
SCALANCE MUM853-1 (B1) versions prior to V8.2
SCALANCE MUM853-1 (EU) versions prior to V8.2
SCALANCE MUM856-1 (A1) versions prior to V8.2
SCALANCE MUM856-1 (B1) versions prior to V8.2
SCALANCE MUM856-1 (CN) versions prior to V8.2
SCALANCE MUM856-1 (EU) versions prior to V8.2
SCALANCE MUM856-1 (RoW) versions prior to V8.2
SCALANCE S615 EEC LAN-Router versions prior to V8.2
SCALANCE S615 LAN-Router versions prior to V8.2
SCALANCE WAB762-1 versions prior to V3.0.0
SCALANCE WAM763-1 versions prior to V3.0.0
SCALANCE WAM763-1 (ME) versions prior to V3.0.0
SCALANCE WAM763-1 (US) versions prior to V3.0.0
SCALANCE WAM766-1 versions prior to V3.0.0
SCALANCE WAM766-1 (ME) versions prior to V3.0.0
SCALANCE WAM766-1 (US) versions prior to V3.0.0
SCALANCE WAM766-1 EEC versions prior to V3.0.0
SCALANCE WAM766-1 EEC (ME) versions prior to V3.0.0
SCALANCE WAM766-1 EEC (US) versions prior to V3.0.0
SCALANCE WUB762-1 versions prior to V3.0.0
SCALANCE WUB762-1 iFeatures versions prior to V3.0.0
SCALANCE WUM763-1 versions prior to V3.0.0
SCALANCE WUM763-1 (US) versions prior to V3.0.0
SCALANCE WUM766-1 versions prior to V3.0.0
SCALANCE WUM766-1 (ME) versions prior to V3.0.0
SCALANCE WUM766-1 (USA) versions prior to V3.0.0
Description
The issue is related to the lack of proper sanitization of filenames before uploading, which could allow an authenticated remote attacker to compromise the integrity of the system.
Recommendations
For RUGGEDCOM RM1224 LTE(4G) EU versions prior to V8.2, update to version V8.2 or later.
For RUGGEDCOM RM1224 LTE(4G) NAM versions prior to V8.2, update to version V8.2 or later.
For SCALANCE M804PB versions prior to V8.2, update to version V8.2 or later.
For SCALANCE M812-1 ADSL-Router versions prior to V8.2, update to version V8.2 or later.
For SCALANCE M816-1 ADSL-Router versions prior to V8.2, update to version V8.2 or later.
For SCALANCE M826-2 SHDSL-Router versions prior to V8.2, update to version V8.2 or later.
For SCALANCE M874-2 versions prior to V8.2, update to version V8.2 or later.
For SCALANCE M874-3 versions prior to V8.2, update to version V8.2 or later.
For SCALANCE M874-3 3G-Router (CN) versions prior to V8.2, update to version V8.2 or later.
For SCALANCE M876-3 versions prior to V8.2, update to version V8.2 or later.
For SCALANCE M876-3 (ROK) versions prior to V8.2, update to version V8.2 or later.
For SCALANCE M876-4 versions prior to V8.2, update to version V8.2 or later.
For SCALANCE M876-4 (EU) versions prior to V8.2, update to version V8.2 or later.
For SCALANCE M876-4 (NAM) versions prior to V8.2, update to version V8.2 or later.
For SCALANCE MUM853-1 (A1) versions prior to V8.2, update to version V8.2 or later.
For SCALANCE MUM853-1 (B1) versions prior to V8.2, update to version V8.2 or later.
For SCALANCE MUM853-1 (EU) versions prior to V8.2, update to version V8.2 or later.
For SCALANCE MUM856-1 (A1) versions prior to V8.2, update to version V8.2 or later.
For SCALANCE MUM856-1 (B1) versions prior to V8.2, update to version V8.2 or later.
For SCALANCE MUM856-1 (CN) versions prior to V8.2, update to version V8.2 or later.
For SCALANCE MUM856-1 (EU) versions prior to V8.2, update to version V8.2 or later.
For SCALANCE MUM856-1 (RoW) versions prior to V8.2, update to version V8.2 or later.
For SCALANCE S615 EEC LAN-Router versions prior to V8.2, update to version V8.2 or later.
For SCALANCE S615 LAN-Router versions prior to V8.2, update to version V8.2 or later.
For SCALANCE WAB762-1 versions prior to V3.0.0, update to version V3.0.0 or later.
For SCALANCE WAM763-1 versions prior to V3.0.0, update to version V3.0.0 or later.
For SCALANCE WAM763-1 (ME) versions prior to V3.0.0, update to version V3.0.0 or later.
For SCALANCE WAM763-1 (US) versions prior to V3.0.0, update to version V3.0.0 or later.
For SCALANCE WAM766-1 versions prior to V3.0.0, update to version V3.0.0 or later.
For SCALANCE WAM766-1 (ME) versions prior to V3.0.0, update to version V3.0.0 or later.
For SCALANCE WAM766-1 (US) versions prior to V3.0.0, update to version V3.0.0 or later.
For SCALANCE WAM766-1 EEC versions prior to V3.0.0, update to version V3.0.0 or later.
For SCALANCE WAM766-1 EEC (ME) versions prior to V3.0.0, update to version V3.0.0 or later.
For SCALANCE WAM766-1 EEC (US) versions prior to V3.0.0, update to version V3.0.0 or later.
For SCALANCE WUB762-1 versions prior to V3.0.0, update to version V3.0.0 or later.
For SCALANCE WUB762-1 iFeatures versions prior to V3.0.0, update to version V3.0.0 or later.
For SCALANCE WUM763-1 versions prior to V3.0.0, update to version V3.0.0 or later.
For SCALANCE WUM763-1 (US) versions prior to V3.0.0, update to version V3.0.0 or later.
For SCALANCE WUM766-1 versions prior to V3.0.0, update to version V3.0.0 or later.
For SCALANCE WUM766-1 (ME) versions prior to V3.0.0, update to version V3.0.0 or later.
For SCALANCE WUM766-1 (USA) versions prior to V3.0.0, update to version V3.0.0 or later.
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ruggedcom Rm1224
Scalance M804Pb
Scalance M812-1
Scalance M816-1
Scalance M826-2
Scalance M874-2
Scalance M874-3
Scalance M876-3
Scalance M876-4
Scalance Mum853-1
Scalance Mum856-1
Scalance S615
Scalance Wab762-1
Scalance Wam763-1
Scalance Wam766-1