First published: Tue Jul 14 2020(Updated: )
A vulnerability has been identified in SIMATIC S7-200 SMART CPU family (All versions >= V2.2 < V2.5.1). Affected devices do not properly handle large numbers of new incomming connections and could crash under certain circumstances. An attacker may leverage this to cause a Denial-of-Service situation.
Credit: productcert@siemens.com
Affected Software | Affected Version | How to fix |
---|---|---|
Siemens SIMATIC S7-200 SMART SR CPU Firmware | >=2.2<2.5.1 | |
Siemens SIMATIC S7-200 SMART SR CPU | ||
Siemens SIMATIC S7-200 SMART ST CPU | >=2.2<2.5.1 | |
Siemens SIMATIC S7-200 SMART ST CPU |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-7584 is a vulnerability identified in the SIMATIC S7-200 SMART CPU family, versions >= V2.2 < V2.5.1.
CVE-2020-7584 has a severity rating of 7.5 (High).
Affected devices may crash under certain circumstances due to the improper handling of large numbers of new incoming connections.
An attacker can exploit CVE-2020-7584 to cause a Denial-of-Service (DoS) situation.
The fix for CVE-2020-7584 is to update the affected SIMATIC S7-200 SMART CPU devices to a version >= V2.5.1.