| Publication Date: |
2021-02-09 |
| Last Update: |
2021-02-09 |
| Current Version: |
V1.0 |
| CVSS v3.1 Base Score: |
9.8 |
- Disable IPsec unless the feature is required in the network environment. Note that IPsec is disabled by default.
| CVSS v3.1 Base Score |
5.9 |
| CVSS Vector |
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C |
| CWE: |
CWE-20: Improper Input Validation |
| CVSS v3.1 Base Score |
6.5 |
| CVSS Vector |
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C |
| CWE: |
CWE-476: NULL Pointer Dereference |
| CVSS v3.1 Base Score |
8.8 |
| CVSS Vector |
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C |
| CWE: |
CWE-787: Out-of-bounds Write |
| CVSS v3.1 Base Score |
9.8 |
| CVSS Vector |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C |
| CWE: |
CWE-345: Insufficient Verification of Data Authenticity |
| CVSS v3.1 Base Score |
7.5 |
| CVSS Vector |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C |
| CWE: |
CWE-295: Improper Certificate Validation |
| CVSS v3.1 Base Score |
7.5 |
| CVSS Vector |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C |
| CWE: |
CWE-125: Out-of-bounds Read |
https://www.siemens.com/cert/advisories