Siemens SiPass integrated AC5102
cpe:2.3:h:siemens:sipass_integrated_ac5102_(acc-g2):*:*:*:*:*:*:*, +1 more
- <= 0
A vulnerability exists in Siemens SiPass integrated AC5102 (ACC-G2) and ACC-AP devices, all versions, due to improper integrity checks of firmware updates. This flaw enables local attackers to upload maliciously modified firmware. Additionally, remote attackers could intercept and alter firmware being transferred from the server to the device.
Exploitation allows for the upload of malicious firmware, which could potentially be used to compromise the device's functionality or security.
Siemens recommends enabling TLS for communications between servers and affected devices to prevent interception and modification of firmware updates. This guidance is applicable to both the AC5102 (ACC-G2) and ACC-AP products.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.