CVE-2018-11451: Input Validation

Published Jul 23, 2018
·
Updated

A vulnerability has been identified in Firmware variant IEC 61850 for EN100 Ethernet module (All versions < V4.33), Firmware variant PROFINET IO for EN100 Ethernet module (All versions), Firmware variant Modbus TCP for EN100 Ethernet module (All versions), Firmware variant DNP3 TCP for EN100 Ethernet module (All versions), Firmware variant IEC104 for EN100 Ethernet module (All versions < V1.22), SIPROTEC 5 relays with CPU variants CP300 and CP100 and the respective Ethernet communication modules (All versions < V7.80), SIPROTEC 5 relays with CPU variants CP200 and the respective Ethernet communication modules (All versions < V7.58). Specially crafted packets to port 102/tcp could cause a denial-of-service condition in the affected products. A manual restart is required to recover the EN100 module functionality of the affected devices. Successful exploitation requires an attacker with network access to send multiple packets to the affected products or modules. As a precondition the IEC 61850-MMS communication needs to be activated on the affected products or modules. No user interaction or privileges are required to exploit the vulnerability. The vulnerability could allow causing a Denial-of-Service condition of the network functionality of the device, compromising the availability of the system. At the time of advisory publication no public exploitation of this security vulnerability was known.

Affected Software

33 affected components
Siemens Dnp3 Tcp Firmware
Siemens Iec 61850 Firmware<4.33
Siemens Iec104 Firmware
Siemens Modbus Tcp Firmware
Siemens Profinet Io Firmware
Siemens En100
Siemens Cp100 Firmware<7.80
Siemens Cp200 Firmware
Siemens Cp300 Firmware<7.80
Siemens 6md85
Siemens 6md86
Siemens 7ke85
Siemens 7sa82
Siemens 7sa86
Siemens 7sa87
Siemens 7sd82
Siemens 7sd86
Siemens 7sd87
Siemens 7sj82
Siemens 7sj85
Siemens 7sj86
Siemens 7sk82
Siemens 7sk85
Siemens 7sl82
Siemens 7sl86
Siemens 7sl87
Siemens 7ss85
Siemens 7um85
Siemens 7ut82
Siemens 7ut85
Siemens 7ut86
Siemens 7ut87
Siemens 7vk87

Event History

Jul 23, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
DescriptionWeakness
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is CVE-2018-11451?

CVE-2018-11451 is a vulnerability identified in the Firmware variant IEC 61850 for EN100 Ethernet module (All versions < V4.33), Firmware variant PROFINET IO for EN100 Ethernet module (All versions), Firmware variant Modbus TCP for EN100 Ethernet module (All versions), Firmware variant DNP3 TCP for EN100 Ethernet module (All versions).

2

What is the severity of CVE-2018-11451?

The severity of CVE-2018-11451 is high, with a severity score of 7.5.

3

Which software versions are affected by CVE-2018-11451?

CVE-2018-11451 affects the following software versions: Firmware variant IEC 61850 for EN100 Ethernet module (All versions < V4.33), Firmware variant PROFINET IO for EN100 Ethernet module (All versions), Firmware variant Modbus TCP for EN100 Ethernet module (All versions), Firmware variant DNP3 TCP for EN100 Ethernet module (All versions).

4

How can I fix CVE-2018-11451?

To fix CVE-2018-11451, it is recommended to update the firmware to a version higher than V4.33 for IEC 61850, PROFINET IO, Modbus TCP, and DNP3 TCP for the EN100 Ethernet module.

5

Where can I find more information about CVE-2018-11451?

More information about CVE-2018-11451 can be found at the following references: - [Siemens Productcert](https://cert-portal.siemens.com/productcert/pdf/ssa-325546.pdf) - [Siemens Productcert](https://cert-portal.siemens.com/productcert/pdf/ssa-635129.pdf) - [SecurityFocus](https://www.securityfocus.com/bid/106221)

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203