A vulnerability has been identified in SIMATIC S7-200 SMART CPU family (All versions >= V2.2 < V2.5.1). Affected devices do not properly handle large numbers of new incomming connections and could crash under certain circumstances. An attacker may leverage this to cause a Denial-of-Service situation.
References
Link | Resource |
---|---|
https://cert-portal.siemens.com/productcert/pdf/ssa-589181.pdf | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Information
Published : 2020-07-14 07:15
Updated : 2020-07-17 11:33
NVD link : CVE-2020-7584
Mitre link : CVE-2020-7584
JSON object : View
CWE
CWE-400
Uncontrolled Resource Consumption
Products Affected
siemens
- simatic_s7-200_smart_sr_cpu
- simatic_s7-200_smart_st_cpu_firmware
- simatic_s7-200_smart_st_cpu
- simatic_s7-200_smart_sr_cpu_firmware