Hirschmann HiSecOS EAGLE
cpe:2.3:o:belden:hirschmann_hisecos:*:*:*:*:*:*:*
- >= 03.4.00, <= 04.0.xx
A privilege escalation vulnerability has been identified in the HiSecOS web server, specifically in the Hirschmann HiSecOS EAGLE product line, versions 03.4.00 prior to 04.1.00. This vulnerability allows authenticated users with operator or auditor roles to escalate their privileges to the administrator role by sending specially crafted packets to the web server. Exploitation of this vulnerability could lead to full administrative access on the affected device.
Exploitation of this vulnerability allows authenticated users to gain full administrative access to the affected device.
Users are advised to update to HiSecOS EAGLE version 04.1.00 or higher.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.