ID

VAR-202009-1679


TITLE

Siemens SIMATIC S7-1200 has a denial of service vulnerability

Trust: 0.6

sources: CNVD: CNVD-2020-49716

DESCRIPTION

SIMATIC S7-1200 is a compact, modular PLC that can complete tasks such as simple logic control, advanced logic control, HMI and network communication. Siemens SIMATIC S7-1200 has a denial of service vulnerability. Attackers can use the vulnerability to send specific commands through the uart interface when the device is started, resulting in a denial of service.

Trust: 0.6

sources: CNVD: CNVD-2020-49716

IOT TAXONOMY

category:['IoT', 'ICS']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2020-49716

AFFECTED PRODUCTS

vendor:siemensmodel:simatic s7-1200scope: - version: -

Trust: 0.6

sources: CNVD: CNVD-2020-49716

CVSS

SEVERITY

CVSSV2

CVSSV3

CNVD: CNVD-2020-49716
value: MEDIUM

Trust: 0.6

CNVD: CNVD-2020-49716
severity: MEDIUM
baseScore: 4.9
vectorString: AV:L/AC:L/AU:N/C:N/I:N/A:C
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: COMPLETE
exploitabilityScore: 3.9
impactScore: 6.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

sources: CNVD: CNVD-2020-49716

PATCH

title:Siemens PLC S7 1200 has a binary vulnerabilityurl:https://www.cnvd.org.cn/patchinfo/show/228665

Trust: 0.6

sources: CNVD: CNVD-2020-49716

EXTERNAL IDS

db:CNVDid:CNVD-2020-49716

Trust: 0.6

sources: CNVD: CNVD-2020-49716

SOURCES

db:CNVDid:CNVD-2020-49716

LAST UPDATE DATE

2022-05-04T10:15:03.345000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2020-49716date:2020-09-01T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2020-49716date:2020-09-18T00:00:00