CVE-2013-5709: Siemens Scalance X-200

High severity, CVSS 8.3. EPSS: 3% chance of exploitation in the next 30 days.

The authentication implementation in the web server on Siemens SCALANCE X-200 switches with firmware before 5.0.0 does not use a sufficient source of entropy for generating values of random numbers, which makes it easier for remote attackers to hijack sessions by predicting a value.

Affected products

Published 2013-09-17. Last modified 2026-06-16.