First published: Tue Mar 10 2020(Updated: )
A vulnerability has been identified in SIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants) (All versions < V3.X.17), SIMATIC TDC CP51M1 (All versions < V1.1.8), SIMATIC TDC CPU555 (All versions < V1.1.1), SINUMERIK 840D sl (All versions < V4.8.6), SINUMERIK 840D sl (All versions < V4.94). Specially crafted packets sent to port 102/tcp (Profinet) could cause the affected device to go into defect mode. A restart is required in order to recover the system. Successful exploitation requires an attacker to have network access to port 102/tcp, with no authentication. No user interation is required. At the time of advisory publication no public exploitation of this security vulnerability was known.
Credit: productcert@siemens.com
Affected Software | Affected Version | How to fix |
---|---|---|
Siemens Simatic S7-300 Cpu Firmware | <3.3.17 | |
Siemens SIMATIC S7-300 CPU | ||
Siemens Simatic S7-300 Cpu 312 Ifm Firmware | <3.3.17 | |
Siemens Simatic S7-300 Cpu 312 Ifm | ||
Siemens Simatic S7-300 Cpu 313 Firmware | <3.3.17 | |
Siemens Simatic S7-300 Cpu 313 | ||
Siemens Simatic S7-300 Cpu 314 Firmware | <3.3.17 | |
Siemens Simatic S7-300 Cpu 314 | ||
Siemens Simatic S7-300 Cpu 314 Ifm Firmware | <3.3.17 | |
Siemens Simatic S7-300 Cpu 314 Ifm | ||
Siemens Simatic S7-300 Cpu 315 Firmware | <3.3.17 | |
Siemens Simatic S7-300 Cpu 315 | ||
Siemens Simatic S7-300 Cpu 315-2 Dp Firmware | <3.3.17 | |
Siemens Simatic S7-300 Cpu 315-2 Dp | ||
Siemens Simatic S7-300 Cpu 316-2 Dp Firmware | <3.3.17 | |
Siemens Simatic S7-300 Cpu 316-2 Dp | ||
Siemens Simatic S7-300 Cpu 318-2 Firmware | <3.3.17 | |
Siemens Simatic S7-300 Cpu 318-2 | ||
Siemens Sinumerik 840d Sl | <4.8.6 | |
Siemens Sinumerik 840d Sl | <4.94 | |
Siemens Simatic Tdc Cp51m1 Firmware | <1.1.8 | |
Siemens Simatic Tdc Cp51m1 | ||
Siemens Simatic Tdc Cpu555 Firmware | <1.1.1 | |
Siemens Simatic Tdc Cpu555 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2019-18336.
The severity of CVE-2019-18336 is high with a CVSS score of 7.5.
All versions prior to V3.X.17 of SIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants), V1.1.8 of SIMATIC TDC CP51M1, V1.1.1 of SIMATIC TDC CPU555, and V4.8.6 of SINUMERIK 840D sl are affected by CVE-2019-18336.
Apply the necessary patches or updates provided by Siemens to fix CVE-2019-18336.
You can find more information about CVE-2019-18336 at the following reference: [Link to Siemens CERT-Portal](https://cert-portal.siemens.com/productcert/pdf/ssa-508982.pdf).