PT-2016-7672 · Siemens · Simatic S7-300+4

Zhu Wenzhe

·

Publicado

2016-12-17

·

Atualizado

2026-06-02

·

CVE-2016-9158

CVSS v2.0

7.8

Alta

VetorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions SIMATIC S7-300 CPU family versions all SIMATIC S7-400 PN/DP V6 and below CPU family versions all SIMATIC S7-400 PN/DP V7 CPU family versions all SIMATIC S7-400 V6 and earlier CPU family versions all SIMATIC S7-400 V7 CPU family versions all
Description A vulnerability has been identified that can be exploited by sending specially crafted packets to port 80/tcp, causing the affected devices to go into defect mode. A cold restart is required to recover the system.
Recommendations For SIMATIC S7-300 CPU family, avoid using port 80/tcp until a fix is available. For SIMATIC S7-400 PN/DP V6 and below CPU family, restrict access to port 80/tcp to minimize the risk of exploitation. For SIMATIC S7-400 PN/DP V7 CPU family, consider disabling the affected port until a patch is available. For SIMATIC S7-400 V6 and earlier CPU family, restrict access to the vulnerable component to prevent exploitation. For SIMATIC S7-400 V7 CPU family, as a temporary workaround, consider implementing additional security measures to prevent specially crafted packets from being sent to port 80/tcp.

Correção

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2016-9158

Produtos afetados

Simatic S7-300
Simatic S7-400 Pn/Dp V6
Simatic S7-400 Pn/Dp V7
Simatic S7-400 V6
Simatic S7-400 V7