CVE-2014-5074
published 2014-08-17CVE-2014-5074: Siemens SIMATIC S7-1500 CPU devices with firmware before 1.6 allow remote attackers to cause a denial of service (device restart and STOP transition) via…
PriorityP344high7.1CVSS 2.0
AVNACMAuNCNINAC
EXPLOIT
EPSS
9.70%
94.9th percentile
Siemens SIMATIC S7-1500 CPU devices with firmware before 1.6 allow remote attackers to cause a denial of service (device restart and STOP transition) via crafted TCP packets.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| siemens | simatic_s7-1500_cpu_firmware | <= 1.5.1 | — |
| siemens | simatic_s7-1500_cpu_firmware | — | — |
| siemens | simatic_s7-1500_cpu_firmware | — | — |
| siemens | simatic_s7-1500_cpu_firmware | — | — |
| siemens | simatic_s7-1500_cpu_firmware | — | — |
| siemens | simatic_s7-1500_cpu_firmware | — | — |
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-64h7-xqm5-vw78: Siemens SIMATIC S7-1500 CPU devices with firmware before 1
ghsa_unreviewed·2022-05-14
CVE-2014-5074 [HIGH] GHSA-64h7-xqm5-vw78: Siemens SIMATIC S7-1500 CPU devices with firmware before 1
Siemens SIMATIC S7-1500 CPU devices with firmware before 1.6 allow remote attackers to cause a denial of service (device restart and STOP transition) via crafted TCP packets.
CISA ICS
Siemens SIMATIC S7-1500 CPU Denial of Service
cisa_ics·2018-08-22·CVSS 7.1
[HIGH] Siemens SIMATIC S7-1500 CPU Denial of Service
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Siemens SIMATIC S7-1500 CPU Denial of Service
Last RevisedAugust 22, 2018
Alert CodeICSA-14-226-01
## OVERVIEW
Arnaud Ebalard from Agence Nationale de la Sécurité des Systèmes d’Information (ANSSI) has reported a denial-of-service (DoS) vulnerability in Siemens SIMATIC S7-1500 CPU. Siemens produced a new firmware version that mitigates this vulnerability and then reported it to NCCIC/ICS-CERT.
This vulnerability could be exploited remotely.
## AFFECTED PRODUCTS
The following Siemens SIMATIC S7-1500 CPU versions are affected:
- SIMATIC S7-1500 CPU all versions before V1.6
##
No detection rules found.
No writeups or analysis indexed.
http://www.siemens.com/innovation/pool/de/forschungsfelder/siemens_security_advisory_ssa-310688.pdfhttps://cert-portal.siemens.com/productcert/pdf/ssa-310688.pdfhttps://ics-cert.us-cert.gov/advisories/ICSA-14-226-01https://www.exploit-db.com/exploits/44693/http://www.siemens.com/innovation/pool/de/forschungsfelder/siemens_security_advisory_ssa-310688.pdfhttps://cert-portal.siemens.com/productcert/pdf/ssa-310688.pdfhttps://ics-cert.us-cert.gov/advisories/ICSA-14-226-01https://www.exploit-db.com/exploits/44693/
2014-08-17
Published