These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.
CVE-2021-4477 is a critical vulnerability in Hirschmann HiLCOS OpenBAT and BAT450 products that allows traffic from VPN connections to bypass configured firewall rules in IPv6 IPsec deployments. The vulnerability has a significant impact on organizations using these products, as it could allow attackers to bypass security controls and access sensitive information. To address this vulnerability, defenders [truncated]
CVE-2018-25236 is an authentication bypass vulnerability in the HTTP(S) management module of Hirschmann HiOS and HiSecOS products, including RSP, RSPE, RSPS, RSPL, MSP, EES, EESX, GRS, OS, RED, and EAGLE. The vulnerability allows unauthenticated remote attackers to gain administrative access by crafting specially formed HTTP requests, exploiting improper authentication handling to obtain the authenticatio [truncated]
CVE-2017-20238 is an improper authorization vulnerability in Hirschmann Industrial HiVision. Versions 06.0.00 and 07.0.00 prior to 06.0.06 and 07.0.01 allow read-only users to gain write access by bypassing access controls. Attackers can exploit alternative interfaces like the web interface or SNMP browser to modify device configurations despite restricted permissions. This vulnerability could lead to una [truncated]
A critical authentication bypass vulnerability exists in GarrettCom Magnum 6K and 10K managed switches. This vulnerability allows unauthenticated attackers to bypass login controls and access administrative functions and sensitive switch configuration without valid credentials by exploiting a hardcoded string in the authentication mechanism. The vulnerability has a CVSS score of 9.3 and is classified as C [truncated]
CVE-2017-20233 is a medium-severity vulnerability in Hirschmann HiLCOS products, including OpenBAT, BAT450, WLC, and BAT867. The vulnerability allows attackers to bypass configured filter rules and inject or observe multicast and broadcast packets when management IP address filtering is disabled. This issue is caused by a firewall filtering problem that fails to correctly filter IPv4 multicast and broadca [truncated]
A critical buffer overflow vulnerability exists in Hirschmann HiSecOS devices versions prior to 05.3.03. The vulnerability occurs in the HTTPS login interface when RADIUS authentication is enabled. Remote attackers can exploit improper bounds checking in password handling to overflow a fixed-size buffer, leading to denial of service or remote code execution. The vulnerability has a CVSS score of 9.3 and i [truncated]
CVE-2016-15058 is a credential exposure vulnerability in Hirschmann HiLCOS Classic Platform switches. User passwords are synchronized with SNMPv1/v2 community strings and transmitted in plaintext when the feature is enabled. Local network attackers can sniff SNMP traffic or extract configuration data to recover plaintext credentials and gain unauthorized administrative access.
CVE-2015-10148 involves Hirschmann HiLCOS devices including OpenBAT, WLC, BAT300, and BAT54. These devices, along with OpenBAT, have a critical vulnerability. They are shipped with identical default SSH and SSL keys that cannot be changed. This allows unauthenticated remote attackers to decrypt or intercept encrypted management communications. The vulnerability enables attackers to perform man-in-the-midd [truncated]
A denial of service vulnerability exists in Hirschmann HiOS devices versions prior to 08.1.00 and 07.1.01 in the EtherNet/IP stack. The vulnerability is caused by improper handling of packet length fields, allowing remote attackers to crash or hang the device. Attackers can send specially crafted UDP EtherNet/IP packets with a length value larger than the actual packet size to render the device inoperable [truncated]
CVE-2017-20237 is a critical authentication bypass vulnerability in Hirschmann Industrial HiVision versions prior to 06.0.07 and 07.0.03. The vulnerability allows unauthenticated remote attackers to execute arbitrary commands with administrative privileges, potentially leading to remote code execution on the underlying operating system. Security teams and administrators should prioritize patching to preve [truncated]
CVE-2025-15620 is a critical denial-of-service vulnerability in the web interface of HiOS Switch Platform versions 09.1.00 through 09.4.04 and 10.0.00 through 10.3.00. The vulnerability allows remote attackers to reboot the affected device by sending a malicious HTTP GET request to a specific endpoint, causing service disruption and unavailability of the switch.