cbcvebase.
CVE-2019-6575
published 2019-04-17

CVE-2019-6575: A vulnerability has been identified in SIMATIC CP 443-1 OPC UA (All versions), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) (All…

high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
A vulnerability has been identified in SIMATIC CP 443-1 OPC UA (All versions), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) (All versions = V2.5 < V2.6.1), SIMATIC S7-1500 Software Controller (All versions between V2.5 (including) and V2.7 (excluding)), SIMATIC WinCC OA (All versions < V3.15 P018), SIMATIC WinCC Runtime Advanced (All versions < V15.1 Upd 4), SINEC NMS (All versions < V1.0 SP1), SINEMA Server (All versions < V14 SP2), SINUMERIK OPC UA Server (All versions < V2.1), TeleControl Server Basic (All versions < V3.1.1). Specially crafted network packets sent to affected devices on port 4840/tcp could allow an unauthenticated remote attacker to cause a denial of service condition of the OPC communication or crash the device. The security vulnerability could be exploited by an attacker with network access to the affected systems. Successful exploitation requires no system privileges and no user interaction. An attacker could use the vulnerability to compromise availability of the OPC communication.

Affected

41 ranges· showing 25
VendorProductVersion rangeFixed in
siemenssimatic_cp_443-1_opc_ua
siemenssimatic_et_200_open_controller_cpu_1515sp_pc2_firmware< 2.72.7
siemenssimatic_et_200sp_open_controller_cpu_1515sp_pc2
siemenssimatic_hmi_comfort_outdoor_panels_7_15
siemenssimatic_hmi_comfort_outdoor_panels_firmware< 15.115.1
siemenssimatic_hmi_comfort_outdoor_panels_firmware
siemenssimatic_hmi_comfort_panels_4_22
siemenssimatic_hmi_ktp_mobile_panels_ktp400f_firmware< 15.115.1
siemenssimatic_hmi_ktp_mobile_panels_ktp400f_firmware
siemenssimatic_hmi_ktp_mobile_panels_ktp700_firmware< 15.115.1
siemenssimatic_hmi_ktp_mobile_panels_ktp700_firmware
siemenssimatic_hmi_ktp_mobile_panels_ktp700f_firmware< 15.115.1
siemenssimatic_hmi_ktp_mobile_panels_ktp700f_firmware
siemenssimatic_hmi_ktp_mobile_panels_ktp900_firmware< 15.115.1
siemenssimatic_hmi_ktp_mobile_panels_ktp900_firmware
siemenssimatic_hmi_ktp_mobile_panels_ktp900f_firmware< 15.115.1
siemenssimatic_hmi_ktp_mobile_panels_ktp900f_firmware
siemenssimatic_ipc_diagmonitor
siemenssimatic_net_pc_software_v13
siemenssimatic_net_pc_software_v14
siemenssimatic_net_pc_software_v15
siemenssimatic_rf188c
siemenssimatic_rf600r_family
siemenssimatic_s7-1500_cpu_family
siemenssimatic_s7-1500_firmware<= 2.5