CVE-2015-2177

Siemens SIMATIC S7-300 CPU devices allow remote attackers to cause a denial of service (defect-mode transition) via crafted packets on (1) TCP port 102 or (2) Profibus.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:siemens:simatic_s7-300_cpu_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_s7-300_cpu:-:*:*:*:*:*:*:*

History

21 Nov 2024, 02:26

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/72973 - () http://www.securityfocus.com/bid/72973 -
References () http://www.securitytracker.com/id/1032040 - Third Party Advisory, VDB Entry () http://www.securitytracker.com/id/1032040 - Third Party Advisory, VDB Entry
References () http://www.siemens.com/innovation/pool/de/forschungsfelder/siemens_security_advisory_ssa-987029.pdf - Vendor Advisory () http://www.siemens.com/innovation/pool/de/forschungsfelder/siemens_security_advisory_ssa-987029.pdf - Vendor Advisory
References () https://cert-portal.siemens.com/productcert/pdf/ssa-987029.pdf - () https://cert-portal.siemens.com/productcert/pdf/ssa-987029.pdf -
References () https://ics-cert.us-cert.gov/advisories/ICSA-15-064-04 - () https://ics-cert.us-cert.gov/advisories/ICSA-15-064-04 -
References () https://www.exploit-db.com/exploits/44802/ - () https://www.exploit-db.com/exploits/44802/ -

Information

Published : 2015-03-07 02:59

Updated : 2024-11-21 02:26


NVD link : CVE-2015-2177

Mitre link : CVE-2015-2177

CVE.ORG link : CVE-2015-2177


JSON object : View

Products Affected

siemens

  • simatic_s7-300_cpu_firmware
  • simatic_s7-300_cpu
CWE
CWE-20

Improper Input Validation