ZeroHour

CVE-2018-4856

CVSS 3.0
4.9 medium
EPSS
1%p68
Published
()
Modified
Description

A vulnerability has been identified in SICLOCK TC100 (All versions) and SICLOCK TC400 (All versions). An attacker with administrative access to the device's management interface could lock out legitimate users. Manual interaction is required to restore the access of legitimate users.

Vendors
siemens
Products
siclock tc400 firmware, siclock tc100 firmware
Weakness
CWE-287
Vector
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H

In the news