Description
Affected devices do not properly validate the length of inputs when performing certain configuration changes in the web interface allowing an authenticated attacker to cause a denial of service condition. The device needs to be restarted for the web interface to become available again.
Problem types
CWE-400: Uncontrolled Resource Consumption
Product status
Any version before V8.1
Any version before V8.1
Any version before V8.1
Any version before V8.1
Any version before V8.1
Any version before V8.1
Any version before V8.1
Any version before V8.1
Any version before V8.1
Any version before V8.1
Any version before V8.1
Any version before V8.1
Any version before V8.1
Any version before V8.1
Any version before V8.1
Any version before V8.1
Any version before V8.1
Any version before V8.1
Any version before V8.1
Any version before V8.1
Any version before V8.1
Any version before V8.1
Any version before V8.1
Any version before V8.1
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
Any version before V4.6
References
cert-portal.siemens.com/productcert/pdf/ssa-699386.pdf
cert-portal.siemens.com/productcert/pdf/ssa-180704.pdf
cert-portal.siemens.com/productcert/html/ssa-699386.html
cert-portal.siemens.com/productcert/html/ssa-180704.html
cert-portal.siemens.com/productcert/html/ssa-602936.html
cert-portal.siemens.com/productcert/html/ssa-353002.html
cert-portal.siemens.com/productcert/html/ssa-087301.html