CVE-2020-28395

A vulnerability has been identified in SCALANCE X-200RNA switch family (All versions < V3.2.7), SCALANCE X-300 switch family (incl. X408 and SIPLUS NET variants) (All versions < V4.1.0). Devices do not create a new unique private key after factory reset. An attacker could leverage this situation to a man-in-the-middle situation and decrypt previously captured traffic.
References
Link Resource
https://cert-portal.siemens.com/productcert/pdf/ssa-274900.pdf Vendor Advisory
https://us-cert.cisa.gov/ics/advisories/icsa-21-012-02 Third Party Advisory US Government Resource Vendor Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:siemens:scalance_xr324-12m_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xr324-12m:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:siemens:scalance_xr324-12m_ts_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xr324-12m_ts:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:siemens:scalance_xr324-4m_eec_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xr324-4m_eec:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:siemens:scalance_xr324-4m_poe_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xr324-4m_poe:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:siemens:scalance_xr324-4m_poe_ts_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xr324-4m_poe_ts:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:siemens:scalance_xr324wg_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xr324wg:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:siemens:scalance_xr326-2c_poe_wg_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xr326-2c_poe_wg:-:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:o:siemens:scalance_xr328-4c_wg_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:scalance_xr328-4c_wg:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2021-01-12 21:15

Updated : 2024-02-28 18:08


NVD link : CVE-2020-28395

Mitre link : CVE-2020-28395

CVE.ORG link : CVE-2020-28395


JSON object : View

Products Affected

siemens

  • scalance_xr324-12m_firmware
  • scalance_xr324-4m_poe
  • scalance_xr326-2c_poe_wg_firmware
  • scalance_xr324-12m_ts_firmware
  • scalance_xr328-4c_wg
  • scalance_xr324-12m
  • scalance_xr324wg
  • scalance_xr324wg_firmware
  • scalance_xr328-4c_wg_firmware
  • scalance_xr324-4m_poe_ts
  • scalance_xr324-4m_eec_firmware
  • scalance_xr324-4m_eec
  • scalance_xr326-2c_poe_wg
  • scalance_xr324-4m_poe_ts_firmware
  • scalance_xr324-12m_ts
  • scalance_xr324-4m_poe_firmware
CWE
CWE-321

Use of Hard-coded Cryptographic Key

CWE-798

Use of Hard-coded Credentials