CVE-2020-27632: High severity siemens simatic mv420 vulnerability
In SIMATIC MV400 family versions prior to v7.0.6, the ISN generator is initialized with a constant value and has constant increments. An attacker could predict and hijack TCP sessions.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-27632?
CVE-2020-27632 is a vulnerability in SIMATIC MV400 family versions prior to v7.0.6 where the ISN generator is initialized with a constant value and has constant increments, allowing an attacker to predict and hijack TCP sessions.
Which software versions are affected by CVE-2020-27632?
SIMATIC MV400 family versions prior to v7.0.6 are affected by CVE-2020-27632.
How severe is CVE-2020-27632?
CVE-2020-27632 has a severity rating of 7.5 (high).
How can I fix CVE-2020-27632?
To fix CVE-2020-27632, it is recommended to update the affected SIMATIC MV400 family device to version v7.0.6 or later.
Where can I find more information about CVE-2020-27632?
You can find more information about CVE-2020-27632 at the following references: [Siemens CERT Portal](https://cert-portal.siemens.com/productcert/pdf/ssa-599268.pdf), [CISA ICS Advisories](https://www.cisa.gov/news-events/ics-advisories/icsa-21-042-01), [Forescout - Numberjack Weak ISN Generation in Embedded TCP/IP Stacks](https://www.forescout.com/resources/numberjack-weak-isn-generation-in-embedded-tcpip-stacks/).