PT-2013-2509 · Siemens · Siemens Cp 1604+1
Publicado
2013-03-29
·
Atualizado
2013-04-01
·
CVE-2013-0659
CVSS v2.0
10
Alta
| Vetor | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Siemens CP 1604 and CP 1616 interface cards versions prior to 2.5.2
Description
The issue allows remote attackers to execute arbitrary code via a crafted packet to UDP port 17185, specifically targeting the debugging feature.
Recommendations
For versions prior to 2.5.2, update the firmware to version 2.5.2 or later to resolve the issue. As a temporary workaround, consider restricting access to UDP port 17185 to minimize the risk of exploitation.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Siemens Cp 1604
Siemens Cp 1616