The vendor explicitly identifies these products as affected by this CVE.
- POWER METER SICAM Q100 (7KG9501-0AA01-0AA1)
- POWER METER SICAM Q100 (7KG9501-0AA01-2AA1)
- POWER METER SICAM Q100 (7KG9501-0AA31-0AA1)
- POWER METER SICAM Q100 (7KG9501-0AA31-2AA1)
- Summary
- Affected devices do not properly validate the RecordType-parameter in requests to the web interface on port 443/tcp. This could allow an authenticated remote attacker to crash the device (followed by an automatic reboot) or to execute arbitrary code on the device.
- Remediation
- Update to V2.50 or later version
