First published: Tue Aug 08 2017(Updated: )
A vulnerability was discovered in Siemens SIMATIC Logon (All versions before V1.6) that could allow specially crafted packets sent to the SIMATIC Logon Remote Access service on port 16389/tcp to cause a Denial-of-Service condition. The service restarts automatically.
Credit: productcert@siemens.com
Affected Software | Affected Version | How to fix |
---|---|---|
Siemens SIMATIC Logon | <=1.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-9938 has been rated with a CVSS score indicating a significant Denial-of-Service vulnerability.
To mitigate CVE-2017-9938, update to Siemens SIMATIC Logon version 1.6 or later.
CVE-2017-9938 allows attackers to send specially crafted packets that can lead to a Denial-of-Service condition.
Any version of Siemens SIMATIC Logon prior to version 1.6 is affected by CVE-2017-9938.
The impact of CVE-2017-9938 is that the SIMATIC Logon Remote Access service may restart automatically after being compromised.