CVE-2012-1799

Siemens Scalance S Firmware < 2.3.0 - Authentication Bypass

Title source: rule

Description

The web server on the Siemens Scalance S Security Module firewall S602 V2, S612 V2, and S613 V2 with firmware before 2.3.0.3 does not limit the rate of authentication attempts, which makes it easier for remote attackers to obtain access via a brute-force attack on the administrative password.

Scores

EPSS 0.0184
EPSS Percentile 82.8%

Classification

CWE
CWE-287
Status draft

Affected Products (6)

siemens/scalance_s_firmware < 2.3.0
siemens/scalance_s_firmware
siemens/scalance_s_firmware
siemens/scalance_s602
siemens/scalance_s612
siemens/scalance_s613

Timeline

Published Apr 18, 2012
Tracked Since Feb 18, 2026