PT-2022-1966 · Siemens · Siplus Tim 1531 Irc+7
Published
2022-02-08
·
Updated
2023-04-11
·
CVE-2021-37185
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
SIMATIC Drive Controller family versions 2.9.2 through 2.9.4
SIMATIC ET 200SP Open Controller CPU 1515SP PC2 versions 21.9 through 21.9.4
SIMATIC S7-1200 CPU family versions 4.5.0 through 4.5.2
SIMATIC S7-1500 CPU family versions 2.9.2 through 2.9.4
SIMATIC S7-1500 Software Controller versions 21.9 through 21.9.4
SIMATIC S7-PLCSIM Advanced versions 4.0 through 4.0 SP1
SIPLUS TIM 1531 IRC versions prior to 2.3.6
TIM 1531 IRC versions prior to 2.3.6
Description
The issue is related to operations with a resource after its expiration. An unauthenticated attacker could cause a denial-of-service condition in a PLC by sending specially prepared packets over port 102/tcp. A restart of the affected device is needed to restore normal operations.
Recommendations
For SIMATIC Drive Controller family versions 2.9.2 through 2.9.4, update to a version outside of this range to resolve the issue.
For SIMATIC ET 200SP Open Controller CPU 1515SP PC2 versions 21.9 through 21.9.4, update to a version outside of this range to resolve the issue.
For SIMATIC S7-1200 CPU family versions 4.5.0 through 4.5.2, update to a version outside of this range to resolve the issue.
For SIMATIC S7-1500 CPU family versions 2.9.2 through 2.9.4, update to a version outside of this range to resolve the issue.
For SIMATIC S7-1500 Software Controller versions 21.9 through 21.9.4, update to a version outside of this range to resolve the issue.
For SIMATIC S7-PLCSIM Advanced versions 4.0 through 4.0 SP1, update to a version outside of this range to resolve the issue.
For SIPLUS TIM 1531 IRC versions prior to 2.3.6, update to version 2.3.6 or later to resolve the issue.
For TIM 1531 IRC versions prior to 2.3.6, update to version 2.3.6 or later to resolve the issue.
As a temporary workaround, consider restricting access to port 102/tcp to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Simatic Drive Controller
Simatic Et 200Sp Open Controller Cpu 1515Sp Pc2
Simatic S7-1200 Cpu
Simatic S7-1500 Cpu
Simatic S7-1500 Software Controller
Simatic S7-Plcsim Advanced
Siplus Tim 1531 Irc
Tim 1531 Irc