Description
Affected devices do not properly restrict access to the web browser via the Control Panel when no corresponding security mechanisms are in place. This could allow an unauthenticated attacker to gain unauthorized access to the web browser, potentially enabling the discovery of backdoors, performing unauthorized actions, or exploiting misconfigurations that may lead to further system compromise.
Problem types
CWE-1188: Initialization of a Resource with an Insecure Default
Product status
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
Any version before V21
References
cert-portal.siemens.com/productcert/html/ssa-387223.html