"value":"A vulnerability has been identified in Cerberus PRO EN Engineering Tool (All versions), Cerberus PRO EN Fire Panel FC72x (All versions < IP8 SR4), Cerberus PRO EN X200 Cloud Distribution (All versions < V4.3.5618), Cerberus PRO EN X300 Cloud Distribution (All versions < V4.3.5617), Sinteso FS20 EN Engineering Tool (All versions), Sinteso FS20 EN Fire Panel FC20 (All versions < MP8 SR4), Sinteso FS20 EN X200 Cloud Distribution (All versions < V4.3.5618), Sinteso FS20 EN X300 Cloud Distribution (All versions < V4.3.5617), Sinteso Mobile (All versions). The network communication library in affected systems insufficiently validates HMAC values which might result in a buffer overread.\r\nThis could allow an unauthenticated remote attacker to crash the network service."
}
]
},
"problemtype":{
"problemtype_data":[
{
"description":[
{
"lang":"eng",
"value":"CWE-125: Out-of-bounds Read",
"cweId":"CWE-125"
}
]
}
]
},
"affects":{
"vendor":{
"vendor_data":[
{
"vendor_name":"Siemens",
"product":{
"product_data":[
{
"product_name":"Cerberus PRO EN Engineering Tool",
"version":{
"version_data":[
{
"version_affected":"<",
"version_name":"0",
"version_value":"*"
}
]
}
},
{
"product_name":"Cerberus PRO EN Fire Panel FC72x",
"version":{
"version_data":[
{
"version_affected":"<",
"version_name":"0",
"version_value":"IP8 SR4"
}
]
}
},
{
"product_name":"Cerberus PRO EN X200 Cloud Distribution",
"version":{
"version_data":[
{
"version_affected":"<",
"version_name":"0",
"version_value":"V4.3.5618"
}
]
}
},
{
"product_name":"Cerberus PRO EN X300 Cloud Distribution",
"version":{
"version_data":[
{
"version_affected":"<",
"version_name":"0",
"version_value":"V4.3.5617"
}
]
}
},
{
"product_name":"Sinteso FS20 EN Engineering Tool",
"version":{
"version_data":[
{
"version_affected":"<",
"version_name":"0",
"version_value":"*"
}
]
}
},
{
"product_name":"Sinteso FS20 EN Fire Panel FC20",
"version":{
"version_data":[
{
"version_affected":"<",
"version_name":"0",
"version_value":"MP8 SR4"
}
]
}
},
{
"product_name":"Sinteso FS20 EN X200 Cloud Distribution",
"version":{
"version_data":[
{
"version_affected":"<",
"version_name":"0",
"version_value":"V4.3.5618"
}
]
}
},
{
"product_name":"Sinteso FS20 EN X300 Cloud Distribution",