Skip to main content

Credentials Management Errors

CVE-2013-4651

Severity Medium
Score 6.6/10

Summary

Siemens Scalance W7xx devices with firmware before 4.5.4 use the same hardcoded X.509 certificate across different customers' installations, which makes it easier for remote attackers to conduct man-in-the-middle attacks against SSL sessions by leveraging the certificate's trust relationship.

  • HIGH
  • NETWORK
  • NONE
  • PARTIAL
  • PARTIAL
  • COMPLETE

CWE-255 - Credentials Management Errors

Weaknesses in this category are related to the management of credentials.

References

Advisory Timeline

  • Published