CVE-2013-5944

Siemens Scalance X-200 Series Firmware < 4.4 - Authentication Bypass

Title source: rule

Description

The integrated web server on Siemens SCALANCE X-200 switches with firmware before 4.5.0 and X-200IRT switches with firmware before 5.1.0 does not properly enforce authentication requirements, which allows remote attackers to perform administrative actions via requests to the management interface.

Scores

EPSS 0.0149
EPSS Percentile 80.8%

Classification

CWE
CWE-287
Status draft

Affected Products (4)

siemens/scalance_x-200_series_firmware < 4.4
siemens/scalance_x-200_series_firmware
siemens/scalance_x-200
siemens/scalance_x-200irt

Timeline

Published Oct 03, 2013
Tracked Since Feb 18, 2026