CVE-2013-6920 Information
Feb 14, 2021
cve
Description
Siemens SINAMICS S/G controllers with firmware before 4.6.11 do not require authentication for FTP and TELNET sessions which allows remote attackers to bypass intended access restrictions via TCP traffic to port (1) 21 or (2) 23.
Reference
http://ics-cert.us-cert.gov/advisories/ICSA-13-338-01 http://www.siemens.com/innovation/pool/de/forschungsfelder/siemens_security_advisory_ssa-742938.pdf https://cert-portal.siemens.com/productcert/pdf/ssa-742938.pdf
Share on: