CVE-2017-2681
published 2017-05-11CVE-2017-2681: Specially crafted PROFINET DCP packets sent on a local Ethernet segment (Layer 2) to an affected product could cause a denial of service condition of that…
PriorityP422medium6.5CVSS 3.1
AVAACLPRNUINSUCNINAH
EPSS
0.91%
55.8th percentile
Specially crafted PROFINET DCP packets sent on a local Ethernet segment (Layer 2) to an affected product could cause a denial of service condition of that product. Human interaction is required to recover the system. PROFIBUS interfaces are not affected.
Affected
196 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| siemens | development_evaluation_kits_for_profinet_io_dk_standard_ethernet_controller | — | — |
| siemens | development_evaluation_kits_for_profinet_io_ek-ertec_200 | — | — |
| siemens | development_evaluation_kits_for_profinet_io_ek-ertec_200p | — | — |
| siemens | dk_standard_ethernet_controller_firmware | < 4.1.1 | 4.1.1 |
| siemens | dk_standard_ethernet_controller_firmware | — | — |
| siemens | ek-ertec_200_pn_io_firmware | < 4.2.1 | 4.2.1 |
| siemens | ek-ertec_200_pn_io_firmware | — | — |
| siemens | ek-ertec_200p_pn_io_firmware | < 4.4.0 | 4.4.0 |
| siemens | ek-ertec_200p_pn_io_firmware | — | — |
| siemens | ie_as-i_link_pn_io | — | — |
| siemens | ie_pb-link | — | — |
| siemens | ie_pb-link_firmware | < 3.0 | 3.0 |
| siemens | pn_pn_coupler_firmware | < 4.0 | 4.0 |
| siemens | scalance_m-800_firmware | < 4.03 | 4.03 |
| siemens | scalance_s615_firmware | < 4.03 | 4.03 |
| siemens | scalance_w-700_ieee_802.11n_family | — | — |
| siemens | scalance_w700_firmware | < 6.1 | 6.1 |
| siemens | scalance_x-200_family | — | — |
| siemens | scalance_x-200irt_family | — | — |
| siemens | scalance_x-300_family | — | — |
| siemens | scalance_x200_firmware | < 5.2.2 | 5.2.2 |
| siemens | scalance_x200_irt_firmware | < 5.4.0 | 5.4.0 |
| siemens | scalance_x300_firmware | < 4.1.0 | 4.1.0 |
| siemens | scalance_x408_family | — | — |
| siemens | scalance_x408_firmware | < 4.1.0 | 4.1.0 |
CVSS provenance
nvdv3.16.5MEDIUMCVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv4.07.1HIGHCVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
nvdv2.06.1MEDIUMAV:A/AC:L/Au:N/C:N/I:N/A:C
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-j585-83xv-q5c7: Specially crafted PROFINET DCP packets sent on a local Ethernet segment (Layer 2) to an affected product could cause a denial of service condition of
ghsa_unreviewed·2022-05-13
CVE-2017-2681 [HIGH] CWE-400 GHSA-j585-83xv-q5c7: Specially crafted PROFINET DCP packets sent on a local Ethernet segment (Layer 2) to an affected product could cause a denial of service condition of
Specially crafted PROFINET DCP packets sent on a local Ethernet segment (Layer 2) to an affected product could cause a denial of service condition of that product. Human interaction is required to recover the system. PROFIBUS interfaces are not affected. This vulnerability affects only SIMATIC HMI Multi Panels and HMI Mobile Panels, and S7-300/S7-400 devices.
CISA ICS
Siemens PROFINET DCP (Update V)
cisa_ics·2021-10-14
Siemens PROFINET DCP (Update V)
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Siemens PROFINET DCP (Update V)
Last RevisedFebruary 10, 2022
Alert CodeICSA-17-129-02
## 1. EXECUTIVE SUMMARY
- CVSS v3 6.5
- ATTENTION: Exploitable from an adjacent network/low attack complexity
- Vendor: Siemens
- Equipment: Devices using the PROFINET Discovery and Configuration Protocol (DCP)
- Vulnerabilities: Uncontrolled Resource Consumption
## 2. UPDATE INFORMATION
This updated advisory is a follow-up to the advisory update titled ICSA-17-129-02 Siemens PROFINET DCP (Update U) that was published October 14, 2021, to the ICS webpage on us-cert.cisa.gov.
## 3. RISK
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.securityfocus.com/bid/98369http://www.securitytracker.com/id/1038463https://cert-portal.siemens.com/productcert/html/ssa-293562.htmlhttps://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdfhttps://www.siemens.com/cert/pool/cert/siemens_security_advisory_ssa-293562.pdfhttp://www.securityfocus.com/bid/98369http://www.securitytracker.com/id/1038463https://cert-portal.siemens.com/productcert/html/ssa-293562.htmlhttps://cert-portal.siemens.com/productcert/pdf/ssa-293562.pdfhttps://www.siemens.com/cert/pool/cert/siemens_security_advisory_ssa-293562.pdf
2017-05-11
Published