CVE-2021-44693
published 2022-12-13CVE-2021-44693: Affected devices don't process correctly certain special crafted packets sent to port 102/tcp, which could allow an attacker to cause a denial of service in…
PriorityP338high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
0.72%
49.5th percentile
Affected devices don't process correctly certain special crafted packets sent to port 102/tcp, which could allow an attacker to cause a denial of service in the device.
Affected
165 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| siemens | simatic_drive_controller_cpu_1504d_tf | — | — |
| siemens | simatic_drive_controller_cpu_1507d_tf | — | — |
| siemens | simatic_et_200sp_open_controller_cpu_1515sp_pc2 | — | — |
| siemens | simatic_s7-1200_cpu_1211c_firmware | < 4.6.0 | 4.6.0 |
| siemens | simatic_s7-1200_cpu_1212c_firmware | < 4.6.0 | 4.6.0 |
| siemens | simatic_s7-1200_cpu_1212fc_firmware | < 4.6.0 | 4.6.0 |
| siemens | simatic_s7-1200_cpu_1214_fc_firmware | < 4.6.0 | 4.6.0 |
| siemens | simatic_s7-1200_cpu_1214c_firmware | < 4.6.0 | 4.6.0 |
| siemens | simatic_s7-1200_cpu_1214fc_firmware | < 4.6.0 | 4.6.0 |
| siemens | simatic_s7-1200_cpu_1215_fc_firmware | < 4.6.0 | 4.6.0 |
| siemens | simatic_s7-1200_cpu_1215c_firmware | < 4.6.0 | 4.6.0 |
| siemens | simatic_s7-1200_cpu_1215fc_firmware | < 4.6.0 | 4.6.0 |
| siemens | simatic_s7-1200_cpu_1217c_firmware | < 4.6.0 | 4.6.0 |
| siemens | simatic_s7-1200_cpu_12_1211c_firmware | < 4.6.0 | 4.6.0 |
| siemens | simatic_s7-1200_cpu_12_1212c_firmware | < 4.6.0 | 4.6.0 |
| siemens | simatic_s7-1200_cpu_12_1212fc_firmware | < 4.6.0 | 4.6.0 |
| siemens | simatic_s7-1200_cpu_12_1214c_firmware | < 4.6.0 | 4.6.0 |
| siemens | simatic_s7-1200_cpu_12_1214fc_firmware | < 4.6.0 | 4.6.0 |
| siemens | simatic_s7-1200_cpu_12_1215c_firmware | < 4.6.0 | 4.6.0 |
| siemens | simatic_s7-1200_cpu_12_1215fc_firmware | < 4.6.0 | 4.6.0 |
| siemens | simatic_s7-1200_cpu_12_1217c_firmware | < 4.6.0 | 4.6.0 |
| siemens | simatic_s7-1200_cpu_family | — | — |
| siemens | simatic_s7-1500_cpu_1507s_f_firmware | < 3.0.1 | 3.0.1 |
| siemens | simatic_s7-1500_cpu_1507s_firmware | < 3.0.1 | 3.0.1 |
| siemens | simatic_s7-1500_cpu_1508s_f_firmware | < 3.0.1 | 3.0.1 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
CISA ICS
Siemens Multiple Denial of Service Vulnerabilities in Industrial Products
cisa_ics·2023-01-13·CVSS 7.5
[HIGH] Siemens Multiple Denial of Service Vulnerabilities in Industrial Products
ICS Advisory
##
Siemens Multiple Denial of Service Vulnerabilities in Industrial Products
Last RevisedJanuary 13, 2023
Alert CodeICSA-22-349-03
As of January 10, 2023, CISA will no longer be updating ICS security advisories for Siemens product vulnerabilities beyond the initial advisory. For the most up-to-date information on vulnerabilities in this advisory, please see Siemens' ProductCERT Security Advisories (CERT Services | Services | Siemens Global).
## 1. EXECUTIVE SUMMARY
- CVSS v3 7.5
- ATTENTION: Exploitable remotely/low attack complexity
- Vendor: Siemens
- Equipment: SIMATIC Products, TIM 1531 IRC
- Vulnerabilities: Improper Input Validation, Improper Validation of Specified Quantity in Input, Improper Validation of Specified Type of Input, Improper
GHSA
GHSA-c29m-qccv-c9p6: A vulnerability has been identified in SIMATIC Drive Controller family (All versions < V3
ghsa_unreviewed·2022-12-13
CVE-2021-44693 [HIGH] CWE-1284 GHSA-c29m-qccv-c9p6: A vulnerability has been identified in SIMATIC Drive Controller family (All versions < V3
A vulnerability has been identified in SIMATIC Drive Controller family (All versions < V3.0.1), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) (All versions), SIMATIC S7-1200 CPU family (incl. SIPLUS variants) (All versions < V4.6.0), SIMATIC S7-1500 CPU family (incl. related ET200 CPUs and SIPLUS variants) (All versions < V3.0.1), SIMATIC S7-1500 Software Controller (All versions), SIMATIC S7-PLCSIM Advanced (All versions < V5.0), SIPLUS TIM 1531 IRC (All versions), TIM 1531 IRC (All versions). Affected devices don't process correctly certain special crafted packets sent to port 102/tcp, which could allow an attacker to cause a denial-of-service in the device.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-12-13
Published