A vulnerability was discovered in Siemens SiPass integrated (All versions before V2.70) that could allow an attacker with network access to the SiPass integrated server to bypass the authentication mechanism and perform administrative operations.
                
            References
                    | Link | Resource | 
|---|---|
| http://www.securityfocus.com/bid/99578 | Third Party Advisory VDB Entry | 
| https://www.siemens.com/cert/pool/cert/siemens_security_advisory_ssa-339433.pdf | Vendor Advisory | 
| http://www.securityfocus.com/bid/99578 | Third Party Advisory VDB Entry | 
| https://www.siemens.com/cert/pool/cert/siemens_security_advisory_ssa-339433.pdf | Vendor Advisory | 
Configurations
                    History
                    No history.
Information
                Published : 2017-08-08 00:29
Updated : 2025-04-20 01:37
NVD link : CVE-2017-9939
Mitre link : CVE-2017-9939
CVE.ORG link : CVE-2017-9939
JSON object : View
Products Affected
                siemens
- sipass_integrated
CWE
                
                    
                        
                        CWE-287
                        
            Improper Authentication
