PT-2024-9466 · Siemens · Sentron Powercenter 1000/1100

Published

2024-10-11

·

Updated

2024-12-10

·

CVE-2024-6657

CVSS v3.1

6.5

Medium

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: Sentron Powercenter 1000/1100 (affected versions not specified)
Description: A denial of service issue may occur in a BLE network when multiple central devices continuously connect and disconnect to a peripheral device, requiring a hard reset to recover. The vulnerability is related to synchronization errors in the BLE component of the Sentron Powercenter 1000/1100 microprogrammed software for monitoring and controlling energy systems. An attacker could exploit this issue to cause a denial of service.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

BDU:2024-11166
CVE-2024-6657

Affected Products

Sentron Powercenter 1000/1100