Headline
CVE-2020-15800
A vulnerability has been identified in SCALANCE X-200 switch family (incl. SIPLUS NET variants) (All versions < V5.2.5), SCALANCE X-200IRT switch family (incl. SIPLUS NET variants) (All versions < V5.5.0), SCALANCE X-300 switch family (incl. X408 and SIPLUS NET variants) (All versions < V4.1.0). The webserver of the affected devices contains a vulnerability that may lead to a heap overflow condition. An attacker could cause this condition on the webserver by sending specially crafted requests. This could stop the webserver temporarily.
%PDF-1.5 %���� 1 0 obj << /D [2 0 R /XYZ 70.866 771.024 null] >> endobj 3 0 obj << /D [2 0 R /XYZ 70.866 646.963 null] >> endobj 4 0 obj << /D [2 0 R /XYZ 70.866 558.978 null] >> endobj 5 0 obj << /D [2 0 R /XYZ 70.866 313.974 null] >> endobj 6 0 obj << /D [2 0 R /XYZ 70.866 230.98 null] >> endobj 7 0 obj << /D [8 0 R /XYZ 85.039 216.531 null] >> endobj 9 0 obj << /D [10 0 R /XYZ 70.866 713.397 null] >> endobj 11 0 obj << /S /GoTo /D [2 0 R /Fit] >> endobj 2 0 obj << /Contents 12 0 R /Type /Page /Resources 13 0 R /Parent 14 0 R /Annots [15 0 R 16 0 R 17 0 R 18 0 R 19 0 R 20 0 R 21 0 R 22 0 R 23 0 R] /MediaBox [0 0 595.276 841.89] >> endobj 15 0 obj << /A << /S /URI /Type /Action /URI (https://support.industry.siemens.com/cs/ww/en/view/109801131/) >> /C [0 1 1] /Subtype /Link /Type /Annot /H /I /Border [0 0 0] /Rect [303.117 457.523 518.276 468.94] >> endobj 17 0 obj << /A << /S /URI /Type /Action /URI (https://support.industry.siemens.com/cs/ww/en/view/109792534/) >> /C [0 1 1] /Subtype /Link /Type /Annot /H /I /Border [0 0 0] /Rect [303.117 408.112 518.276 419.529] >> endobj 19 0 obj << /A << /S /URI /Type /Action /URI (https://support.industry.siemens.com/cs/ww/en/view/109773547/) >> /C [0 1 1] /Subtype /Link /Type /Annot /H /I /Border [0 0 0] /Rect [303.117 358.7 518.276 370.117] >> endobj 21 0 obj << /A << /S /URI /Type /Action /URI (https://www.siemens.com/cert/operational-guidelines-industrial-security) >> /C [0 1 1] /Subtype /Link /Type /Annot /H /I /Border [0 0 0] /Rect [164.798 138.908 487.754 150.445] >> endobj 22 0 obj << /A << /S /URI /Type /Action /URI (https://www.siemens.com/industrialsecurity) >> /C [0 1 1] /Subtype /Link /Type /Annot /H /I /Border [0 0 0] /Rect [406.699 109.14 525.406 120.557] >> endobj 13 0 obj << /ProcSet [/PDF /Text] /Font << /F55 24 0 R /F52 25 0 R >> >> endobj 12 0 obj << /Filter /FlateDecode /Length 2964 >> stream x��]s�6�ݿ�oG�T0> "s/��v����r.��EۜȤ*R����.J$E3�(�>�"@`��% ��z������CLģ`yhJ�( �1D1,W��M�=fE5�s�7Y����L�y��M-V��IAC?�q��ϝ���j����3X�������ry���h�(��dz?��� ��P"L<ٕ��T�()�yܜ���z���L$O��И���%1Z�A:��� b��m)CX{�,�L��1��SW8�?� ���) ��c�����.�g w�"�&�u^�YuLW��il�D(=@ W1TN�8����))����� 3M�I�kI�$ pC�P�x��w���L�0�x������$���d�ȗ��Q�A`�=���#��3�S�(�;�мXNb?��6b��G���U9����4���) �6��F�`\���d�iv����:})������(�V$z��amЙȜ�6��b"ףQ�EX1�)�����f�Y��O/��El!s��EegC�:O�:/$_&u��i,y�)gs���!xΘU��UR�n��f�v)͘�e�Lvv)��b��f���~�0�Vp:�,f�{F���77n�g� ��sRe>Χ�Б �C;�"��[�h4F��D���V�’b�3��ׯ�3E������tq��,L@>�8����W��d\,^-�\\���S�⧼N2�ȤeQ’��g;-�}��/���g�.G�f.ij����]oKrw��gi�����ឧp$b�ʊJ���J� � �zz�d��5�4aR�I�z� �9L��[���Dz��(K��� `R��z8�p�’k �������MY# �z��M䏛$��3Rn)ꦄ�Ch��T_�:{