CVE-2023-46156
published 2023-12-12CVE-2023-46156: Affected devices improperly handle specially crafted packets sent to port 102/tcp. This could allow an attacker to create a denial of service condition. A…
PriorityP342high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
1.24%
65.9th percentile
Affected devices improperly handle specially crafted packets sent to port 102/tcp.
This could allow an attacker to create a denial of service condition. A restart is needed to restore
normal operations.
Affected
147 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| siemens | simatic_drive_controller_cpu_1504d_tf | < V3.1.0 | V3.1.0 |
| siemens | simatic_drive_controller_cpu_1504d_tf_firmware | < 3.1.0 | 3.1.0 |
| siemens | simatic_drive_controller_cpu_1507d_tf | < V3.1.0 | V3.1.0 |
| siemens | simatic_drive_controller_cpu_1507d_tf_firmware | < 3.1.0 | 3.1.0 |
| siemens | simatic_et_200sp_open_controller_cpu_1515sp_pc2 | < V30.1.0 | V30.1.0 |
| siemens | simatic_s7-1500_cpu_1510sp-1_pn | < * | * |
| siemens | simatic_s7-1500_cpu_1510sp-1_pn | < V3.1.0 | V3.1.0 |
| siemens | simatic_s7-1500_cpu_1510sp-1_pn_firmware | < 3.1.0 | 3.1.0 |
| siemens | simatic_s7-1500_cpu_1510sp_f-1_pn | < * | * |
| siemens | simatic_s7-1500_cpu_1510sp_f-1_pn | < V3.1.0 | V3.1.0 |
| siemens | simatic_s7-1500_cpu_1510sp_f-1_pn_firmware | < 3.1.0 | 3.1.0 |
| siemens | simatic_s7-1500_cpu_1511-1_pn | < * | * |
| siemens | simatic_s7-1500_cpu_1511-1_pn | < V3.1.0 | V3.1.0 |
| siemens | simatic_s7-1500_cpu_1511-1_pn_firmware | < 3.1.0 | 3.1.0 |
| siemens | simatic_s7-1500_cpu_1511c-1_pn | < * | * |
| siemens | simatic_s7-1500_cpu_1511c-1_pn | < V3.1.0 | V3.1.0 |
| siemens | simatic_s7-1500_cpu_1511c-1_pn_firmware | < 3.1.0 | 3.1.0 |
| siemens | simatic_s7-1500_cpu_1511f-1_pn | < * | * |
| siemens | simatic_s7-1500_cpu_1511f-1_pn | < V3.1.0 | V3.1.0 |
| siemens | simatic_s7-1500_cpu_1511f-1_pn_firmware | < 3.1.0 | 3.1.0 |
| siemens | simatic_s7-1500_cpu_1511t-1_pn | < * | * |
| siemens | simatic_s7-1500_cpu_1511t-1_pn | < V3.1.0 | V3.1.0 |
| siemens | simatic_s7-1500_cpu_1511t-1_pn_firmware | < 3.1.0 | 3.1.0 |
| siemens | simatic_s7-1500_cpu_1511tf-1_pn | < * | * |
| siemens | simatic_s7-1500_cpu_1511tf-1_pn | < V3.1.0 | V3.1.0 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
CISA ICS
Siemens SINUMERIK
cisa_ics·2023-12-14·CVSS 7.5
[HIGH] Siemens SINUMERIK
ICS Advisory
##
Siemens SINUMERIK
Release DateDecember 14, 2023
Alert CodeICSA-23-348-11
As of January 10, 2023, CISA will no longer be updating ICS security advisories for Siemens product vulnerabilities beyond the initial advisory. For the most up-to-date information on vulnerabilities in this advisory, please see Siemens' ProductCERT Security Advisories (CERT Services | Services | Siemens Global).
View CSAF
## 1. EXECUTIVE SUMMARY
- CVSS v3 7.5
- ATTENTION: Exploitable remotely/low attack complexity
- Vendor: Siemens
- Equipment: SINUMERIK MC, SINUMERIK ONE
- Vulnerability: Use After Free
## 2. RISK EVALUATION
Successful exploitation of this vulnerability could allow an attacker to cause a denial-of-service condition.
## 3. TECHNICAL DETAILS
## 3.1 A
CISA ICS
Siemens Simantic S7-1500 CPU family
cisa_ics·2023-12-14
Siemens Simantic S7-1500 CPU family
ICS Advisory
##
Siemens Simantic S7-1500 CPU family
Release DateDecember 14, 2023
Alert CodeICSA-23-348-09
As of January 10, 2023, CISA will no longer be updating ICS security advisories for Siemens product vulnerabilities beyond the initial advisory. For the most up-to-date information on vulnerabilities in this advisory, please see Siemens' ProductCERT Security Advisories (CERT Services | Services | Siemens Global).
View CSAF
## 1. EXECUTIVE SUMMARY
- CVSS v3 7.5
- ATTENTION: Exploitable remotely/low attack complexity
- Vendor: Siemens
- Equipment: Simantic S7-1500 CPU family
- Vulnerability: Use After Free
## 2. RISK EVALUATION
Successful exploitation of this vulnerability could allow an attacker to cause a denial-of-service condition.
## 3. TECHNICAL
GHSA
GHSA-5fwp-f47r-rg74: Affected devices improperly handle specially crafted packets sent to port 102/tcp
ghsa_unreviewed·2023-12-12
CVE-2023-46156 [HIGH] CWE-416 GHSA-5fwp-f47r-rg74: Affected devices improperly handle specially crafted packets sent to port 102/tcp
Affected devices improperly handle specially crafted packets sent to port 102/tcp.
This could allow an attacker to create a denial of service condition. A restart is needed to restore
normal operations.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://cert-portal.siemens.com/productcert/html/ssa-280603.htmlhttps://cert-portal.siemens.com/productcert/html/ssa-592380.htmlhttps://cert-portal.siemens.com/productcert/pdf/ssa-280603.pdfhttps://cert-portal.siemens.com/productcert/pdf/ssa-592380.pdfhttps://cert-portal.siemens.com/productcert/html/ssa-280603.htmlhttps://cert-portal.siemens.com/productcert/html/ssa-592380.htmlhttps://cert-portal.siemens.com/productcert/pdf/ssa-280603.pdfhttps://cert-portal.siemens.com/productcert/pdf/ssa-592380.pdf
2023-12-12
Published