PT-2019-4788 · Siemens · Simatic S7-300

Publicado

2019-01-08

·

Atualizado

2019-10-03

·

CVE-2018-16561

CVSS v2.0

7.8

Alta

VetorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions SIMATIC S7-300 CPUs versions prior to V3.X.16
Description A vulnerability has been identified that improperly validates S7 communication packets, potentially causing a Denial-of-Service condition of the CPU. The CPU will remain in DEFECT mode until manual restart. Successful exploitation requires an attacker to send a specially crafted S7 communication packet to a communication interface of the CPU, including Ethernet, PROFIBUS, and Multi Point Interfaces (MPI). No user interaction or privileges are required to exploit the security issue. This could allow causing a Denial-of-Service condition of the core functionality of the CPU, compromising the availability of the system.
Recommendations For versions prior to V3.X.16, update to a version V3.X.16 or later to resolve the security issue. As a temporary workaround, consider restricting access to the communication interfaces, including Ethernet, PROFIBUS, and Multi Point Interfaces (MPI), to minimize the risk of exploitation.

Correção

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2020-01366
CVE-2018-16561

Produtos afetados

Simatic S7-300