VYPR

Ozw672 Firmware

Sign in to watch

by Siemens Foundation

CVEs (3)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2017-6873Hig0.487.40.00Aug 8, 2017A vulnerability was discovered in Siemens OZW672 (all versions) and OZW772 (all versions) that could allow an attacker to read and manipulate data in TLS sessions while performing a man-in-the-middle (MITM) attack on the integrated web server on port 443/tcp.
CVE-2017-6872Med0.426.50.00Aug 8, 2017A vulnerability was discovered in Siemens OZW672 (all versions) and OZW772 (all versions) that could allow an attacker with access to port 21/tcp to access or alter historical measurement data stored on the device.
CVE-2016-1488Med0.406.10.00Jan 30, 2016Cross-site scripting (XSS) vulnerability in the login form in the integrated web server on Siemens OZW OZW672 devices before 6.00 and OZW772 devices before 6.00 allows remote attackers to inject arbitrary web script or HTML via a crafted URL.