CVE-2015-1448
The integrated management service on Siemens Ruggedcom WIN51xx devices with firmware before SS4.4.4624.35, WIN52xx devices with firmware before SS4.4.4624.35, WIN70xx devices with firmware before B...
Affects 5 products across 1 vendor.
Broad class covering failures in permission enforcement. Deprecated in favor of CWE-284, CWE-862, CWE-863.
CVE-2015-1448 affects Siemens Ruggedcom WIN51xx, WIN52xx, WIN70xx, and WIN72xx devices with firmware versions prior to SS4.4.4624.35 and BS4.4.4621.32, respectively. This vulnerability allows remote attackers to bypass authentication and perform administrative actions, leading to complete compromise of the device. Given the CVSS score of 10.0, this is a critical issue that requires immediate attention.
BSID: BS-2015-GLOBAL-103268-C • Model: Qwen/Qwen2.5-72B-Instruct-AWQ • Confidence: HIGH
Is this CVE in your environment?
BreachSpider monitors your ICS/OT environment for vulnerabilities like this one. No agents or network access required. Free to start.
Check My Environment →What is CVE-2015-1448?
What is the CVSS score for CVE-2015-1448?
Is CVE-2015-1448 actively exploited?
How do I remediate CVE-2015-1448?
What systems are affected by CVE-2015-1448?
What NERC-CIP standard applies to CVE-2015-1448?
What IEC 62443 requirement maps to CVE-2015-1448?
| CVE ID | CVE-2015-1448 |
|---|---|
| BSID | BS-2015-GLOBAL-103268-C BreachSpider Global ID |
| CVSS Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
| Published | 2015-02-02 |
| Last Modified | 2026-05-06 |
| ICS Relevance | 85% |
| Weakness (CWE) | |
| Verticals | |
| Source | NVD |
The integrated management service on Siemens Ruggedcom WIN51xx devices with firmware before SS4.4.4624.35, WIN52xx devices with firmware before SS4.4.4624.35, WIN70xx devices with firmware before BS4.4.4621.32, and WIN72xx devices with firmware before BS4.4.4621.32 allows remote attackers to bypass authentication and perform administrative actions via unspecified vectors.
Source: NIST NVD / MITRE CVE Database
The vulnerability exists in the integrated management service of the affected Siemens Ruggedcom devices. Remote attackers can exploit this issue by sending specially crafted requests to the management service, which can bypass authentication mechanisms and allow them to perform administrative actions without proper authorization. This can lead to full control over the device, including configuration changes, data exfiltration, and potential disruption of services.
Exploitation Likelihood: CRITICAL
| Vendor | Product | Fixed Version |
|---|---|---|
| Siemens | Ruggedcom Firmware | — |
| Siemens | Ruggedcom Win7000 | — |
| Siemens | Ruggedcom Win7200 | — |
| Siemens | Ruggedcom Win5100 | — |
| Siemens | Ruggedcom Win5200 | — |
| CISA KEV | Not in KEV catalog |
|---|---|
| Public Exploit | Not confirmed |
| PoC Code | Not confirmed |
Implement strict network segmentation and access controls to limit exposure to the management service. Use firewalls to restrict access to the management interface to trusted networks and IP addresses. Regularly monitor logs for unauthorized access attempts.
This CVE violates CIP-007-R2 because it allows unauthorized access to the management interface, which could compromise the security of the electronic security perimeter and the systems within it.
This CVE maps to SR 7.6 because it involves a vulnerability in the authentication mechanism, which is critical for maintaining the security of the industrial control system. Proper authentication is essential to prevent unauthorized access and control of the device.
Virtual patch generated by CITED Relevance SAGE. Validate in isolated environment before production deployment. Compensating control only - does not replace vendor patch.
SAGE Enrichment Record — provenance & audit hash
| Model | Qwen/Qwen2.5-72B-Instruct-AWQ |
|---|---|
| Confidence | HIGH |
| Enriched At | 2026-05-24 |
| SHA-512 Audit Hash | 8b365d4c5ccd048fd6d044950a0b1fb788ad7b7c458e142f65c9e953dd1b6b5f80c9e553aeae19017de647c7f631057cebc8f5aafaf09dd0d71d1cc19904b012 |
Critical Severity - Know Your Exposure
A CVSS 10.0 vulnerability in your ICS environment cannot wait. BreachSpider maps critical CVEs to your specific assets and tells you what to fix first.
Check Your Assets Free →