ZeroHour

CVE-2020-28393

CVSS 3.1
7.5 high
EPSS
2%p75
Published
()
Modified
Description

An unauthenticated remote attacker could create a permanent denial-of-service condition by sending specially crafted OSPF packets. Successful exploitation requires OSPF to be enabled on an affected device on the SCALANCE XM-400, XR-500 (All versions prior to v6.4).

Vendors
siemens
Products
scalance xm-400 firmware, scalance xr524 firmware, scalance xr526 firmware, scalance xr528 firmware, scalance xr552 firmware, scalance xm416-4c firmware, scalance xm408-8c firmware, scalance xm408-4c firmware, scalance xm416-4c l3 firmware, scalance xm408-8c l3 firmware, scalance xm408-4c l3 firmware
Weakness
CWE-682
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.