CVE-2017-6867
published 2017-05-11CVE-2017-6867: A vulnerability was discovered in Siemens SIMATIC WinCC (V7.3 before Upd 11 and V7.4 before SP1), SIMATIC WinCC Runtime Professional (V13 before SP2 and V14…
PriorityP425medium4.9CVSS 3.0
AVNACLPRHUINSUCNINAH
EPSS
1.92%
77.5th percentile
A vulnerability was discovered in Siemens SIMATIC WinCC (V7.3 before Upd 11 and V7.4 before SP1), SIMATIC WinCC Runtime Professional (V13 before SP2 and V14 before SP1), SIMATIC WinCC (TIA Portal) Professional (V13 before SP2 and V14 before SP1) that could allow an authenticated, remote attacker who is member of the "administrators" group to crash services by sending specially crafted messages to the DCOM interface.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| siemens | simatic_wincc | — | — |
| siemens | simatic_wincc | — | — |
| siemens | simatic_wincc | — | — |
| siemens | simatic_wincc | — | — |
| siemens | simatic_wincc_runtime | — | — |
| siemens | simatic_wincc_runtime | — | — |
CVSS provenance
nvdv3.04.9MEDIUMCVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:P
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-f7g5-6g5q-8c2q: A vulnerability was discovered in Siemens SIMATIC WinCC (V7
ghsa_unreviewed·2022-05-14
CVE-2017-6867 [MEDIUM] CWE-20 GHSA-f7g5-6g5q-8c2q: A vulnerability was discovered in Siemens SIMATIC WinCC (V7
A vulnerability was discovered in Siemens SIMATIC WinCC (V7.3 before Upd 11 and V7.4 before SP1), SIMATIC WinCC Runtime Professional (V13 before SP2 and V14 before SP1), SIMATIC WinCC (TIA Portal) Professional (V13 before SP2 and V14 before SP1) that could allow an authenticated, remote attacker who is member of the "administrators" group to crash services by sending specially crafted messages to the DCOM interface.
CISA ICS
Siemens SIMATIC PCS 7 (Update A)
cisa_ics·2017-11-02·CVSS 4.9
[MEDIUM] Siemens SIMATIC PCS 7 (Update A)
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Siemens SIMATIC PCS 7 (Update A)
Last RevisedJune 12, 2018
Alert CodeICSA-17-306-01
## 1. EXECUTIVE SUMMARY
-
CVSS v3 4.9
- ATTENTION: Exploitable remotely/low skill level to exploit
- Vendor: Siemens
- Equipment: SIMATIC PCS 7
- Vulnerabilities: Improper Input Validation
## 2. UPDATE INFORMATION
This updated advisory is a follow-up to the original advisory titled ICSA-17-306-01 Siemens SIMATIC PCS 7 that was published November 2, 2017, on the NCCIC/ICS-CERT website.
## 3. RISK EVALUATION
Successful exploitation of this vulnerability could allow a remote authenticated at
CISA ICS
Siemens SIMATIC WinCC and SIMATIC WinCC Runtime Professional
cisa_ics·2017-05-09
Siemens SIMATIC WinCC and SIMATIC WinCC Runtime Professional
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Siemens SIMATIC WinCC and SIMATIC WinCC Runtime Professional
Last RevisedMay 09, 2017
Alert CodeICSA-17-129-03
## CVSS v3 4.9
ATTENTION: Remotely exploitable/low skill level to exploit.
Vendor: Siemens
Equipment: SIMATIC WinCC and SIMATIC WinCC Runtime Professional
Vulnerability: Denial of Service
## AFFECTED PRODUCTS
Siemens reports that the vulnerability affects the following versions of SIMATIC WinCC, SIMATIC WinCC (TIA Portal), and SIMATIC WinCC Runtime Professional:
- SIMATIC WinCC:
- V7.3: All versions prior to V7.3 Update 11, and
- V7.4: All versions prior to V7.4
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.securityfocus.com/bid/98368https://cert-portal.siemens.com/productcert/pdf/ssa-523365.pdfhttps://www.siemens.com/cert/pool/cert/siemens_security_advisory_ssa-156872.pdfhttp://www.securityfocus.com/bid/98368https://cert-portal.siemens.com/productcert/pdf/ssa-523365.pdfhttps://www.siemens.com/cert/pool/cert/siemens_security_advisory_ssa-156872.pdf
2017-05-11
Published