Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-49169 | A vulnerability has been identified in SCALANCE X204RNA (HSR) (All versions < V3.2.7), SCALANCE X204RNA (PRP) (All versions < V3.2.7), SCALANCE X204RNA EEC (HSR) (All versions < V3.2.7), SCALANCE X204RNA EEC (PRP) (All versions < V3.2.7), SCALANCE X204RNA EEC (PRP/HSR) (All versions < V3.2.7). The webserver of affected devices calculates session ids and nonces in an insecure manner. This could allow an unauthenticated remote attacker to brute-force session ids and hijack existing sessions. |
Tue, 22 Apr 2025 04:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Subscriptions
Status: PUBLISHED
Assigner: siemens
Published:
Updated: 2025-04-22T02:55:31.276Z
Reserved: 2022-11-30T00:00:00.000Z
Link: CVE-2022-46353
Updated: 2024-08-03T14:31:45.922Z
Status : Modified
Published: 2022-12-13T16:15:25.853
Modified: 2025-04-22T03:15:20.540
Link: CVE-2022-46353
No data.
OpenCVE Enrichment
No data.
EUVD