CVE-2019-10953: High severity ABB Pm554-tp-eth Firmware vulnerability

Published Apr 17, 2019
·
Updated

ABB, Phoenix Contact, Schneider Electric, Siemens, WAGO - Programmable Logic Controllers, multiple versions. Researchers have found some controllers are susceptible to a denial-of-service attack due to a flood of network packets.

Affected Software

40 affected components
ABB Pm554-tp-eth Firmware
ABB Pm554-tp-eth
Phoenixcontact Ilc 151 Eth Firmware
Phoenixcontact Ilc 151 Eth
Schneider-electric Modicon M221 Firmware<1.10.0.0
Schneider-electric Modicon M221
Siemens 6es7211-1ae40-0xb0 Firmware
Siemens 6es7211-1ae40-0xb0
Siemens 6es7314-6eh04-0ab0 Firmware
Siemens 6es7314-6eh04-0ab0
Siemens 6ed1052-1cc01-0ba8 Firmware
Siemens 6ed1052-1cc01-0ba8
WAGO Knx Ip Firmware
WAGO Knx Ip
WAGO PFC100 Firmware
WAGO PFC100
WAGO Ethernet Firmware
WAGO Ethernet
WAGO Bacnet\/ip Firmware
WAGO Bacnet\/ip
All of the following
ABB Pm554-tp-eth Firmware
ABB Pm554-tp-eth
All of the following
Phoenixcontact Ilc 151 Eth Firmware
Phoenixcontact Ilc 151 Eth
All of the following
Schneider-electric Modicon M221 Firmware<1.10.0.0
Schneider-electric Modicon M221
All of the following
Siemens 6es7211-1ae40-0xb0 Firmware
Siemens 6es7211-1ae40-0xb0
All of the following
Siemens 6es7314-6eh04-0ab0 Firmware
Siemens 6es7314-6eh04-0ab0
All of the following
Siemens 6ed1052-1cc01-0ba8 Firmware
Siemens 6ed1052-1cc01-0ba8
All of the following
WAGO Knx Ip Firmware
WAGO Knx Ip
All of the following
WAGO PFC100 Firmware
WAGO PFC100
All of the following
WAGO Ethernet Firmware
WAGO Ethernet
All of the following
WAGO Bacnet\/ip Firmware
WAGO Bacnet\/ip

Remediation

Information

Fixes are available in  Schneider Electric Modicon M221 firmware v1.10.0.0 and EcoStruxure Machine Expert – Basic v1.0 software (formerly SoMachine Basic) using either of the following options: Use this link to download the Machine Expert Basic software. Or run the Schneider Electric Software Update tool in order to download and install EcoStruxure Machine Expert – Basic v1.0 software. For additional information, see the Schneider Electric security notice SEVD-2019-045-01. (https://download.schneider-electric.com/files?p_Doc_Ref=SEVD-2019-045-01) Schneider Electric strongly recommends following industry cybersecurity best practices, such as: * Physical controls should be in place so no unauthorized person would have access to the ICS and safety controllers, peripheral equipment, or the ICS and safety networks. * All controllers should reside in locked cabinets and never be left in the “Program” mode. * All programming software should be kept in locked cabinets and should never be connected to any network other than the network for the devices it is intended. * All methods of mobile data exchange with the isolated network (e.g., CDs, USB drives, etc.) should be scanned before use in terminals or any node connected to these networks. * Laptops that have connected to any other network besides the intended network should never be allowed to connect to the safety or control networks without proper sanitation.

Event History

Apr 17, 2019
CVE Published
via MITRE·02:02 PM
Data Sourced
via MITRE·02:02 PM
RemedyDescriptionWeakness
Data Sourced
via NVD·03:29 PM
DescriptionSeverityWeaknessAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the vulnerability ID for this issue?

The vulnerability ID for this issue is CVE-2019-10953.

2

What is the severity level of CVE-2019-10953?

CVE-2019-10953 has a severity level of 7.5 (high).

3

Which software versions are affected by CVE-2019-10953?

ABB PM554-TP-ETH firmware, Phoenixcontact ILC 151 ETH firmware, and Schneider-electric Modicon M221 firmware versions up to 1.10.0.0 are affected by CVE-2019-10953.

4

What is the impact of the vulnerability CVE-2019-10953?

The vulnerability CVE-2019-10953 can allow an attacker to carry out a denial-of-service attack by flooding the network with packets.

5

Are there any references for CVE-2019-10953?

Yes, you can find more information about CVE-2019-10953 at the following links: [SecurityFocus](http://www.securityfocus.com/bid/108413) and [ICS-CERT](https://ics-cert.us-cert.gov/advisories/ICSA-19-106-03).

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203