CVE-2020-15800 - CVE House
Back to Database
Status published Critical CVE-2020-15800

A vulnerability has been identified in SCALANCE X-200 switch family...

Vulnerability Description

A vulnerability has been identified in SCALANCE X-200 switch family (incl. SIPLUS NET variants) (All versions < V5.2.5), SCALANCE X-200IRT switch family (incl. SIPLUS NET variants) (All versions < V5.5.0), SCALANCE X-300 switch family (incl. X408 and SIPLUS NET variants) (All versions < V4.1.0). The webserver of the affected devices contains a vulnerability that may lead to a heap overflow condition. An attacker could cause this condition on the webserver by sending specially crafted requests. This could stop the webserver temporarily.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2020-15800

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

SCALANCE X-200 switch family (incl. SIPLUS NET variants), SCALANCE X-200IRT switch family (incl. SIPLUS NET variants), SCALANCE X-300 switch family (incl. X408 and SIPLUS NET variants)
Vulnerable Versions:
All versions < V5.2.5, All versions < V5.5.0, All versions < V4.1.0

Timeline

Official Publish: January 12th, 2021
Last Modified: August 4th, 2024
Added to House: July 21st, 2026

CVSS Vectors

V3: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Weaknesses (CWE)