PT-2015-1513 · Siemens · Siprotec+2

M. Can Kurnaz

·

Published

2015-03-01

·

Updated

2026-02-16

·

CVE-2015-5374

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Firmware variant PROFINET IO for EN100 Ethernet module versions prior to V1.04.01 Firmware variant Modbus TCP for EN100 Ethernet module versions prior to V1.11.00 Firmware variant DNP3 TCP for EN100 Ethernet module versions prior to V1.03 Firmware variant IEC 104 for EN100 Ethernet module versions prior to V1.21 EN100 Ethernet module included in SIPROTEC Merging Unit 6MU80 versions prior to 1.02.02
Description A specially crafted packet sent to port 50000/UDP could cause a denial-of-service of the affected device, resulting in the device not performing its primary functions. This could lead to the device becoming unresponsive, requiring a manual reboot to recover the service. The issue affects the Siemens SIPROTEC device, potentially causing it to fail in protecting primary equipment at electrical stations and substations.
Recommendations For Firmware variant PROFINET IO for EN100 Ethernet module versions prior to V1.04.01, update to version V1.04.01 or later. For Firmware variant Modbus TCP for EN100 Ethernet module versions prior to V1.11.00, update to version V1.11.00 or later. For Firmware variant DNP3 TCP for EN100 Ethernet module versions prior to V1.03, update to version V1.03 or later. For Firmware variant IEC 104 for EN100 Ethernet module versions prior to V1.21, update to version V1.21 or later. For EN100 Ethernet module included in SIPROTEC Merging Unit 6MU80 versions prior to 1.02.02, update to version 1.02.02 or later. As a temporary workaround, consider restricting access to port 50000/UDP to minimize the risk of exploitation.

Exploit

Fix

RCE

Weakness Enumeration

Related Identifiers

BDU:2015-10800
CVE-2015-5374

Affected Products

En100 Ethernet Module
Siprotec
Siprotec Merging Unit 6Mu80