CVE-2018-11456 is a vulnerability in Siemens Automation License Manager 5 (all versions prior to 5.3.4.4) that allows an unauthenticated attacker with network access to the device to perform basic network scanning. By sending specially crafted packets, the attacker can determine if a port on another remote system is accessible through the affected device. This medium-severity vulnerability (CVSS 5.8) has low impact, limited to information disclosure about network port accessibility, with no known active exploitation, public exploit code, or significant community discussion.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 5.3.4.4CPE matchmatch criteria | cpe:2.3:a:siemens:automation_license_manager:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.