ID

VAR-202001-1874


TITLE

Command execution vulnerability in Siemens PLC s7-300

Trust: 0.6

sources: CNVD: CNVD-2020-00001

DESCRIPTION

S7-300 is one of the programmable logic controller (PLC) series products produced by German Siemens. Siemens PLC s7-300 has a command execution vulnerability. An attacker can use this vulnerability to execute malicious commands and obtain administrator rights

Trust: 0.72

sources: CNVD: CNVD-2020-00001 // IVD: ad117164-f529-4795-ac5d-1d296cd9ace7

IOT TAXONOMY

category:['IoT', 'ICS']sub_category: -

Trust: 0.6

category:['ICS']sub_category: -

Trust: 0.2

sources: IVD: ad117164-f529-4795-ac5d-1d296cd9ace7 // CNVD: CNVD-2020-00001

AFFECTED PRODUCTS

vendor:siemensmodel:s7-300scope: - version: -

Trust: 0.6

vendor:siemensmodel:s7-300scope:eqversion:*

Trust: 0.2

sources: IVD: ad117164-f529-4795-ac5d-1d296cd9ace7 // CNVD: CNVD-2020-00001

CVSS

SEVERITY

CVSSV2

CVSSV3

CNVD: CNVD-2020-00001
value: HIGH

Trust: 0.6

IVD: ad117164-f529-4795-ac5d-1d296cd9ace7
value: HIGH

Trust: 0.2

CNVD: CNVD-2020-00001
severity: HIGH
baseScore: 10.0
vectorString: AV:N/AC:L/AU:N/C:C/I:C/A:C
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 10.0
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

IVD: ad117164-f529-4795-ac5d-1d296cd9ace7
severity: HIGH
baseScore: 10.0
vectorString: AV:N/AC:L/AU:N/C:C/I:C/A:C
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 10.0
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.9 [IVD]

Trust: 0.2

sources: IVD: ad117164-f529-4795-ac5d-1d296cd9ace7 // CNVD: CNVD-2020-00001

TYPE

Command injection

Trust: 0.2

sources: IVD: ad117164-f529-4795-ac5d-1d296cd9ace7

PATCH

title:Command execution vulnerability in PLC s7-300url:https://www.cnvd.org.cn/patchinfo/show/190429

Trust: 0.6

sources: CNVD: CNVD-2020-00001

EXTERNAL IDS

db:CNVDid:CNVD-2020-00001

Trust: 0.8

db:IVDid:AD117164-F529-4795-AC5D-1D296CD9ACE7

Trust: 0.2

sources: IVD: ad117164-f529-4795-ac5d-1d296cd9ace7 // CNVD: CNVD-2020-00001

SOURCES

db:IVDid:ad117164-f529-4795-ac5d-1d296cd9ace7
db:CNVDid:CNVD-2020-00001

LAST UPDATE DATE

2022-05-17T02:09:42.528000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2020-00001date:2020-01-17T00:00:00

SOURCES RELEASE DATE

db:IVDid:ad117164-f529-4795-ac5d-1d296cd9ace7date:2020-01-02T00:00:00
db:CNVDid:CNVD-2020-00001date:2019-12-29T00:00:00