Filtered by vendor Siedle Subscriptions
Filtered by product Sg 150-0 Firmware Subscriptions
Total 3 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2020-9475 1 Siedle 2 Sg 150-0, Sg 150-0 Firmware 2021-07-21 7.0 High
The S. Siedle & Soehne SG 150-0 Smart Gateway before 1.2.4 allows local privilege escalation via a race condition in logrotate. By using an exploit chain, an attacker with access to the network can get root access on the gateway.
CVE-2020-9474 1 Siedle 2 Sg 150-0, Sg 150-0 Firmware 2020-05-14 8.8 High
The S. Siedle & Soehne SG 150-0 Smart Gateway before 1.2.4 allows remote code execution via the backup functionality in the web frontend. By using an exploit chain, an attacker with access to the network can get root access on the gateway.
CVE-2020-9473 1 Siedle 2 Sg 150-0, Sg 150-0 Firmware 2020-05-14 6.6 Medium
The S. Siedle & Soehne SG 150-0 Smart Gateway before 1.2.4 has a passwordless ftp ssh user. By using an exploit chain, an attacker with access to the network can get root access on the gateway.