VendorsSiedlesg_150-0_firmwareall versions
Vulnerabilities

Siedle SG 150-0 Firmware

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2020-9474
The S. Siedle & Soehne SG 150-0 Smart Gateway before 1.2.4 allows remote code execution via the backup functionality in the web frontend. By using an exploit chain, an attacker with access to the network can get root access on the gateway.
Published 2020-05-07 · Modified
9.0EPSS 0.019
CVE-2020-9473
The S. Siedle & Soehne SG 150-0 Smart Gateway before 1.2.4 has a passwordless ftp ssh user. By using an exploit chain, an attacker with access to the network can get root access on the gateway.
Published 2020-04-06 · Modified
8.5EPSS 0.010
CVE-2020-9475
The S. Siedle & Soehne SG 150-0 Smart Gateway before 1.2.4 allows local privilege escalation via a race condition in logrotate. By using an exploit chain, an attacker with access to the network can get root access on the gateway.
Published 2020-05-07 · Modified
7.0EPSS 0.003