ICSA-21-131-14: Siemens SCALANCE W1750D (Update B)
CISA advisory · released 2021-05-11
Source record Collected from CISA's CSAF advisory feed
- Distribution label in the document: TLP:WHITE
- Revision 4, 2025-05-06 (final)
CISA's summary
Summary: The Scalance W1750D device contains multiple vulnerabilities that could allow an attacker to inject commands or trigger buffer overflows. Siemens has released updates for the affected products and recommends to update to the latest versions.
Products, as the advisory lists them
| Vendor | Product | Version |
|---|---|---|
| Siemens | SCALANCE W1750D | <V8.7.0 |
| Siemens | SCALANCE W1750D | >=V8.7.0_and_<V8.7.1.3 |
DeSpy has not checked any unit, hardware revision or firmware.
Vulnerabilities in this advisory
- CVE-2019-5317 — CVE-2019-5317 · CWE-287
A local authentication bypass vulnerability was discovered in some Aruba Instant Access Point (IAP).
- CVE-2019-5319 — CVE-2019-5319 · CWE-120
A remote buffer overflow vulnerability was discovered in some Aruba Instant Access Point (IAP).
- CVE-2020-24635 — CVE-2020-24635 · CWE-77
A remote execution of arbitrary commands vulnerability was discovered in some Aruba Instant Access Point (IAP).
- CVE-2020-24636 — CVE-2020-24636 · CWE-77
A remote execution of arbitrary commands vulnerability was discovered in some Aruba Instant Access Point (IAP).
- CVE-2021-25143 — CVE-2021-25143 · CWE-20
A remote Denial of Service (DoS) vulnerability was discovered in some Aruba Instant Access Point (IAP).
- CVE-2021-25144 — CVE-2021-25144 · CWE-120
A remote buffer overflow vulnerability was discovered in some Aruba Instant Access Point (IAP).
- CVE-2021-25145 — CVE-2021-25145 · CWE-20
A remote unauthorized disclosure of information vulnerability was discovered in some Aruba Instant Access Point (IAP).
- CVE-2021-25146 — CVE-2021-25146 · CWE-77
A remote execution of arbitrary commands vulnerability was discovered in some Aruba Instant Access Point (IAP).
- CVE-2021-25148 — CVE-2021-25148 · CWE-20
A remote arbitrary file modification vulnerability was discovered in some Aruba Instant Access Point (IAP).
- CVE-2021-25149 — CVE-2021-25149 · CWE-120
A remote buffer overflow vulnerability was discovered in some Aruba Instant Access Point (IAP).
- CVE-2021-25150 — CVE-2021-25150 · CWE-77
A remote execution of arbitrary commands vulnerability was discovered in some Aruba Instant Access Point (IAP).
- CVE-2021-25155 — CVE-2021-25155 · CWE-20
A remote arbitrary file modification vulnerability was discovered in some Aruba Instant Access Point (IAP).
- CVE-2021-25156 — CVE-2021-25156 · CWE-20
A remote arbitrary directory create vulnerability was discovered in some Aruba Instant Access Point (IAP).
- CVE-2021-25157 — CVE-2021-25157 · CWE-20
A remote arbitrary file read vulnerability was discovered in some Aruba Instant Access Point (IAP).
- CVE-2021-25158 — CVE-2021-25158 · CWE-362
A remote arbitrary file read vulnerability was discovered in some Aruba Instant Access Point (IAP).
- CVE-2021-25159 — CVE-2021-25159 · CWE-20
A remote arbitrary file modification vulnerability was discovered in some Aruba Instant Access Point (IAP).
- CVE-2021-25160 — CVE-2021-25160 · CWE-20
A remote arbitrary file modification vulnerability was discovered in some Aruba Instant Access Point (IAP).
- CVE-2021-25161 — CVE-2021-25161 · CWE-79
A remote cross-site scripting (xss) vulnerability was discovered in some Aruba Instant Access Point (IAP).
- CVE-2021-25162 — CVE-2021-25162 · CWE-77
A remote execution of arbitrary commands vulnerability was discovered in some Aruba Instant Access Point (IAP).
- CVE-2021-34617 — CVE-2021-34617 · CWE-80
A vulnerability in the captive portal of Aruba Instant could allow an unauthenticated remote attacker to conduct a reflected cross-site scripting (XSS) attack against another user of the portal. A successful exploit could allow an attacker to execute arbitrary script code in a victim’s browser in the context of the affected interface.
- CVE-2021-34618 — CVE-2021-34618 · CWE-400
An unauthenticated Denial of Service vulnerability exists in affected Aruba Instant access points. Exploitation of this vulnerability is only possible via direct ethernet connection to the access point. This vulnerability can be exploited through the LLDP protocol and successful exploitation results in the unavailability of the affected access point due to resource exhaustion.
Acknowledgments, as the advisory lists them
- Siemens ProductCERT: reporting these vulnerabilities to CISA.
The advisory's legal notice
Siemens Security Advisories are subject to the terms and conditions contained in Siemens' underlying license terms or other applicable agreements previously agreed to with Siemens (hereinafter "License Terms"). To the extent applicable to information, software or documentation made available in or through a Siemens Security Advisory, the Terms of Use of Siemens' Global Website (https://www.siemens.com/terms_of_use, hereinafter "Terms of Use"), in particular Sections 8-10 of the Terms of Use, shall apply additionally. In case of conflicts, the License Terms shall prevail over the Terms of Use.
Sources
DeSpy's copy of this version is dated 2026-09-28.
This product uses the NVD API but is not endorsed or certified by the NVD.
CVE records: Copyright © 1999-2026, The MITRE Corporation. CVE is a trademark and the CVE logo is a registered trademark of The MITRE Corporation.
CVE Usage: MITRE hereby grants you a perpetual, worldwide, non-exclusive, no-charge, royalty-free, irrevocable copyright license to reproduce, prepare derivative works of, publicly display, publicly perform, sublicense, and distribute Common Vulnerabilities and Exposures (CVE™). Any copy you make for such purposes is authorized provided that you reproduce MITRE's copyright designation and this license in any such copy.
CISA's Known Exploited Vulnerabilities catalog and CISA Vulnrichment data are CC0 1.0. CISA advisories are shown with the TLP label their document carries. No endorsement by CISA, DHS, NIST or MITRE is stated or implied.