PT-2013-2509 · Siemens · Siemens Cp 1604+1
Published
2013-03-29
·
Updated
2013-04-01
·
CVE-2013-0659
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Siemens CP 1604 and CP 1616 interface cards versions prior to 2.5.2
Description
The issue allows remote attackers to execute arbitrary code via a crafted packet to UDP port 17185, specifically targeting the debugging feature.
Recommendations
For versions prior to 2.5.2, update the firmware to version 2.5.2 or later to resolve the issue. As a temporary workaround, consider restricting access to UDP port 17185 to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Siemens Cp 1604
Siemens Cp 1616