CVE-2017-2680
SIEMENS SIMATIC CP 343-1 Std, CP 343-1 Lean (All versions), SIMATIC CP 343-1 Adv (All versions), SIMATIC CP 443-1 Std, CP 443-1 Adv (All versions before V3.2.17), SIMATIC CP 443-1 OPC-UA (All versions), SIMATIC CP 1243-1 (All versions before V2.1.82), SIMATIC CP 1243-1 IRC (All versions before V2.1.82), SIMATIC CP 1243-1 IEC (All versions), SIMATIC CP 1243-1 DNP3 (All versions), SIMATIC CM 1542-1 (All versions before V2.0), SIMATIC CP 1542SP-1, CP 1542SP-1 IRC, and CP 1543SP-1 (All versions before to V1.0.15), SIMATIC CP 1543-1 (All versions before V2.1), SIMATIC RF650R, RF680R, RF685R (All versions before V3.0), SIMATIC CP 1616, CP 1604, DK-16xx PN IO (All versions before V2.7), SCALANCE X-200 (All versions before V5.2.2), SCALANCE X200 IRT (All versions before V5.4.0), SCALANCE X-300/X408 (All versions before V4.1.0), SCALANCE X414 (All versions before V3.10.2), SCALANCE XM400, XR500 (All versions before V6.1), SCALANCE W700 (All versions before V6.1), SCALANCE M-800, S615 (All versions before V04.03), Softnet PROFINET IO for PC-based Windows systems (All versions before V14 SP1), IE/PB-Link (All versions before V3.0), IE/AS-i Link PN IO (All versions), SIMATIC Teleservice Adapter Standard Modem, IE Basic, IE Advanced (All versions), SITOP PSU8600 PROFINET (All versions before V1.2.0), SITOP UPS1600 PROFINET (All versions before V2.2.0), SIMATIC ET 200AL (All versions before V1.0.2), SIMATIC ET 200ecoPN (All versions), SIMATIC ET 200M (All versions), SIMATIC ET 200MP (All versions before V4.0.1), SIMATIC ET 200pro (All versions), SIMATIC ET 200S (All versions), SIMATIC ET 200SP (All versions before V4.1.0), SIMATIC PN/PN Coupler (All versions before V4.0), DK Standard Ethernet Controller (All versions before V4.1.1 Patch04), EK-ERTEC 200P PN IO (All versions before V4.4.0 Patch01), EK-ERTEC 200 PN IO (All versions before V4.2.1 Patch03), SIMATIC S7-200 SMART (All versions before V2.3), SIMATIC S7-300 incl. F and T (All versions before V3.X.14), SIMATIC S7-400 PN/DP V6 Incl. F (All versions before V6.0.6), SIMATIC S7-400-H V6 (All versions before V6.0.7), SIMATIC S7-400 PN/DP V7 incl. F (All versions), SIMATIC S7-CPU 410 (All versions before V8.2), SIMATIC S7-1200 incl. F (All versions before V4.2.1), SIMATIC S7-1500 incl. F, T, and TF (All versions before V2.1), SIMATIC S7-1500 Software Controller incl. F (All versions before V2.1), SIMATIC WinAC RTX 2010 incl. F (All versions), SIRIUS ACT 3SU1 interface module PROFINET (All versions), SIRIUS Soft starter 3RW44 PN (All versions), SIRIUS Motor starter M200D PROFINET (All versions), SIMOCODE pro V PROFINET (All versions), SINAMICS DCM (All versions before V1.4 SP1 HF5), SINAMICS DCP (All versions), SINAMICS G110M / G120(C/P/D) w. PN (All versions before V4.7 SP6 HF3), SINAMICS G130 and G150 (All versions before V4.7 HF27 and V4.8 before HF4), SINAMICS S110 w. PN (All versions before V4.4 SP1 HF5), SINAMICS S120 (All versions before V4.7 HF27 and V4.8 before HF4), SINAMICS S150 (All versions before V4.7 HF27 and V4.8 before HF4), SINAMICS V90 w. PN (All versions before V1.1), SIMOTION (All versions before V4.5 HF1), SINUMERIK 828D (All versions before V4.5 SP6 HF2 and V4.7 before SP6 HF8), SINUMERIK 840D sl (All versions before V4.5 SP6 HF8 and V4.7 before SP4 HF1), SIMATIC HMI Comfort Panels, HMI Multi Panels, HMI Mobile Panels (All versions) could be affected by a Denial-of-Service condition induced by a specially crafted PROFINET DCP broadcast (Layer 2 - Ethernet) packet.
Published : 2017-05-11 01:29 Updated : 2018-05-11 01:29
CVSS Score
More info
Score 6.1 / 10
Specialized access conditions or extenuating circumstances do not exist. The following are examples:
- The affected product typically requires access to a wide range of systems and users, possibly anonymous and untrusted (e.g., Internet-facing web or mail server).
- The affected configuration is default or ubiquitous.
- The attack can be performed manually and requires little skill or additional information gathering.
- The race condition is a lazy one (i.e., it is technically a race but easily winnable).
Authentication is not required to exploit the vulnerability.
There is no impact to the confidentiality of the system.
There is no impact to the integrity of the system.
There is a total shutdown of the affected resource. The attacker can render the resource completely unavailable.
Vendor | Product | Version | URI |
---|---|---|---|
Siemens | Simatic Cp 443-1 Adv Firmware | - | cpe:/o:siemens:simatic_cp_443-1_adv_firmware:- |
Siemens | Sinumerik 828d Firmware | 4.7 | cpe:/o:siemens:sinumerik_828d_firmware:4.7 |
Siemens | Simatic Et 200mp Firmware | - | cpe:/o:siemens:simatic_et_200mp_firmware:- |
Siemens | Scalance X200 Irt Firmware | - | cpe:/o:siemens:scalance_x200_irt_firmware:- |
Siemens | Ie%2fpb-link Firmware | - | cpe:/o:siemens:ie%2fpb-link_firmware:- |
Siemens | Simatic Cm 1542-1 Firmware | - | cpe:/o:siemens:simatic_cm_1542-1_firmware:- |
Siemens | Simatic Et 200sp Firmware | - | cpe:/o:siemens:simatic_et_200sp_firmware:- |
Siemens | Sinamics Dcm Firmware | - | cpe:/o:siemens:sinamics_dcm_firmware:- |
Siemens | Simatic Cp 1543sp-1 Firmware | - | cpe:/o:siemens:simatic_cp_1543sp-1_firmware:- |
Siemens | Simocode Pro V Profinet Firmware | - | cpe:/o:siemens:simocode_pro_v_profinet_firmware:- |
Siemens | Sinumerik 828d Firmware | 4.5 | cpe:/o:siemens:sinumerik_828d_firmware:4.5 |
Siemens | Simatic Cp 443-1 Opc-ua Firmware | - | cpe:/o:siemens:simatic_cp_443-1_opc-ua_firmware:- |
Siemens | Ups1600 Profinet Firmware | - | cpe:/o:siemens:ups1600_profinet_firmware:- |
Siemens | Ek-ertec 200 Pn Io Firmware | 4.2.1 | cpe:/o:siemens:ek-ertec_200_pn_io_firmware:4.2.1 |
Siemens | Simatic Et 200s Firmware | - | cpe:/o:siemens:simatic_et_200s_firmware:- |
Siemens | Simatic S7-1500 Firmware | - | cpe:/o:siemens:simatic_s7-1500_firmware:- |
Siemens | Simatic Hmi Mobile Panels | - | cpe:/o:siemens:simatic_hmi_mobile_panels:- |
Siemens | Simatic Teleservice Adapter Standard Modem Firmware | - | cpe:/o:siemens:simatic_teleservice_adapter_standard_modem_firmware:- |
Siemens | Simatic Rf685r Firmware | - | cpe:/o:siemens:simatic_rf685r_firmware:- |
Siemens | Simatic Et 200m Firmware | - | cpe:/o:siemens:simatic_et_200m_firmware:- |
Siemens | Simatic S7-400 Firmware | - | cpe:/o:siemens:simatic_s7-400_firmware:- |
Siemens | Pn%2fpn Coupler Firmware | - | cpe:/o:siemens:pn%2fpn_coupler_firmware:- |
Siemens | Simatic Cp 1243-1 Firmware | - | cpe:/o:siemens:simatic_cp_1243-1_firmware:- |
Siemens | Simatic Rf650r Firmware | - | cpe:/o:siemens:simatic_rf650r_firmware:- |
Siemens | Simotion Firmware | 4.5 | cpe:/o:siemens:simotion_firmware:4.5 |
Siemens | Scalance Xm400 Firmware | - | cpe:/o:siemens:scalance_xm400_firmware:- |
Siemens | Sinamics G110m Firmware | 4.7 | cpe:/o:siemens:sinamics_g110m_firmware:4.7 |
Siemens | Simatic S7-300 Firmware | - | cpe:/o:siemens:simatic_s7-300_firmware:- |
Siemens | Scalance S615 Firmware | - | cpe:/o:siemens:scalance_s615_firmware:- |
Siemens | Simatic Cp 343-1 Lean Firmware | - | cpe:/o:siemens:simatic_cp_343-1_lean_firmware:- |
Siemens | Scalance X414 Firmware | - | cpe:/o:siemens:scalance_x414_firmware:- |
Siemens | Simatic Winac Rtx 2010 Firmware | - | cpe:/o:siemens:simatic_winac_rtx_2010_firmware:- |
Siemens | Sirius Act 3su1 Firmware | - | cpe:/o:siemens:sirius_act_3su1_firmware:- |
Siemens | Scalance X300 Firmware | - | cpe:/o:siemens:scalance_x300_firmware:- |
Siemens | Scalance X408 Firmware | - | cpe:/o:siemens:scalance_x408_firmware:- |
Siemens | Sinumerik 840d Sl Firmware | 4.7 | cpe:/o:siemens:sinumerik_840d_sl_firmware:4.7 |
Siemens | Simatic Cp 343-1 Std Firmware | - | cpe:/o:siemens:simatic_cp_343-1_std_firmware:- |
Siemens | Sinumerik 840d Sl Firmware | 4.5 | cpe:/o:siemens:sinumerik_840d_sl_firmware:4.5 |
Siemens | Simatic Cp 443-1 Std Firmware | - | cpe:/o:siemens:simatic_cp_443-1_std_firmware:- |
Siemens | Simatic S7-1500 Software Controller Firmware | - | cpe:/o:siemens:simatic_s7-1500_software_controller_firmware:- |
Siemens | Simatic Rf680r Firmware | - | cpe:/o:siemens:simatic_rf680r_firmware:- |
Siemens | Scalance Xr500 Firmware | - | cpe:/o:siemens:scalance_xr500_firmware:- |
Siemens | Sirius Soft Starter 3rw44 Pn Firmware | - | cpe:/o:siemens:sirius_soft_starter_3rw44_pn_firmware:- |
Siemens | Simatic Cp 1604 Firmware | - | cpe:/o:siemens:simatic_cp_1604_firmware:- |
Siemens | Simatic Hmi Multi Panels | - | cpe:/o:siemens:simatic_hmi_multi_panels:- |
Siemens | Softnet Profinet Io Firmware | - | cpe:/o:siemens:softnet_profinet_io_firmware:- |
Siemens | Sinamics Dcp Firmware | - | cpe:/o:siemens:sinamics_dcp_firmware:- |
Siemens | Sitop Psu8600 Firmware | - | cpe:/o:siemens:sitop_psu8600_firmware:- |
Siemens | Simatic S7-200 Smart Firmware | - | cpe:/o:siemens:simatic_s7-200_smart_firmware:- |
Siemens | Sinamics G130 Firmware | 4.8 | cpe:/o:siemens:sinamics_g130_firmware:4.8 |
Siemens | Simatic Teleservice Adapter Ie Basic Modem Firmware | - | cpe:/o:siemens:simatic_teleservice_adapter_ie_basic_modem_firmware:- |
Siemens | Simatic Cp 1616 Firmware | - | cpe:/o:siemens:simatic_cp_1616_firmware:- |
Siemens | Simatic Dk-16xx Pn Io Firmware | - | cpe:/o:siemens:simatic_dk-16xx_pn_io_firmware:- |
Siemens | Simatic S7-1200 Firmware | - | cpe:/o:siemens:simatic_s7-1200_firmware:- |
Siemens | Simatic Cp 343-1 Adv Firmware | - | cpe:/o:siemens:simatic_cp_343-1_adv_firmware:- |
Siemens | Simatic Cp 1542sp-1 Irc Firmware | - | cpe:/o:siemens:simatic_cp_1542sp-1_irc_firmware:- |
Siemens | Simatic Et 200pro Firmware | - | cpe:/o:siemens:simatic_et_200pro_firmware:- |
Siemens | Simatic Cp 1542sp-1 Firmware | - | cpe:/o:siemens:simatic_cp_1542sp-1_firmware:- |
Siemens | Dk Standard Ethernet Controller Firmware | 4.1.1 | cpe:/o:siemens:dk_standard_ethernet_controller_firmware:4.1.1 |
Siemens | Sinamics S120 Firmware | 4.8 | cpe:/o:siemens:sinamics_s120_firmware:4.8 |
Siemens | Scalance X200 Firmware | - | cpe:/o:siemens:scalance_x200_firmware:- |
Siemens | Ie%2fas-i Link Pn Io Firmware | - | cpe:/o:siemens:ie%2fas-i_link_pn_io_firmware:- |
Siemens | Scalance M-800 Firmware | - | cpe:/o:siemens:scalance_m-800_firmware:- |
Siemens | Sinamics G120%28c%2fp%2fd%29 W. Pn Firmware | 4.7 | cpe:/o:siemens:sinamics_g120%28c%2fp%2fd%29_w._pn_firmware:4.7 |
Siemens | Sinamics V90 W. Pn Firmware | - | cpe:/o:siemens:sinamics_v90_w._pn_firmware:- |
Siemens | Simatic Et 200al Firmware | - | cpe:/o:siemens:simatic_et_200al_firmware:- |
Siemens | Sirius Motor Starter M200d Profinet Firmware | - | cpe:/o:siemens:sirius_motor_starter_m200d_profinet_firmware:- |
Siemens | Simatic Hmi Comfort Panels | - | cpe:/o:siemens:simatic_hmi_comfort_panels:- |
Siemens | Scalance W700 Firmware | - | cpe:/o:siemens:scalance_w700_firmware:- |
Siemens | Simatic Teleservice Adapter Ie Advanced Modem Firmware | - | cpe:/o:siemens:simatic_teleservice_adapter_ie_advanced_modem_firmware:- |
Siemens | Sinamics S150 Firmware | 4.8 | cpe:/o:siemens:sinamics_s150_firmware:4.8 |
Siemens | Simatic Cp 1543-1 Firmware | - | cpe:/o:siemens:simatic_cp_1543-1_firmware:- |
Siemens | Ek-ertec 200p Pn Io Firmware | 4.4.0 | cpe:/o:siemens:ek-ertec_200p_pn_io_firmware:4.4.0 |
Siemens | Sinamics S110 W. Pn Firmware | - | cpe:/o:siemens:sinamics__s110_w._pn_firmware:- |
Siemens | Simatic Et 200ecopn Firmware | - | cpe:/o:siemens:simatic_et_200ecopn_firmware:- |
Siemens | Sinamics G150 Firmware | 4.8 | cpe:/o:siemens:sinamics_g150_firmware:4.8 |
-
Siemens (74) Search CVE
-
Sinamics S120 Firmware (1) Search CVE
-
4.8
-
-
Simatic Cp 1543-1 Firmware (1) Search CVE
-
-
-
-
Ek-ertec 200 Pn Io Firmware (1) Search CVE
-
4.2.1
-
-
Simatic Hmi Mobile Panels (1) Search CVE
-
-
-
-
Ups1600 Profinet Firmware (1) Search CVE
-
-
-
-
Simatic Et 200s Firmware (1) Search CVE
-
-
-
-
Sinamics Dcm Firmware (1) Search CVE
-
-
-
-
Dk Standard Ethernet Controller Firmware (1) Search CVE
-
4.1.1
-
-
Simatic Cp 343-1 Adv Firmware (1) Search CVE
-
-
-
-
Pn%2fpn Coupler Firmware (1) Search CVE
-
-
-
-
Scalance M-800 Firmware (1) Search CVE
-
-
-
-
Simatic Cp 443-1 Opc-ua Firmware (1) Search CVE
-
-
-
-
Scalance Xm400 Firmware (1) Search CVE
-
-
-
-
Sinumerik 828d Firmware (2) Search CVE
-
4.7
-
4.5
-
-
Simatic Hmi Multi Panels (1) Search CVE
-
-
-
-
Simatic Dk-16xx Pn Io Firmware (1) Search CVE
-
-
-
-
Scalance Xr500 Firmware (1) Search CVE
-
-
-
-
Simocode Pro V Profinet Firmware (1) Search CVE
-
-
-
-
Simatic Teleservice Adapter Standard Modem Firmware (1) Search CVE
-
-
-
-
Simatic S7-200 Smart Firmware (1) Search CVE
-
-
-
-
Sinamics Dcp Firmware (1) Search CVE
-
-
-
-
Simatic Et 200m Firmware (1) Search CVE
-
-
-
-
Scalance X414 Firmware (1) Search CVE
-
-
-
-
Simatic Et 200mp Firmware (1) Search CVE
-
-
-
-
Simatic Teleservice Adapter Ie Basic Modem Firmware (1) Search CVE
-
-
-
-
Simatic Cp 443-1 Std Firmware (1) Search CVE
-
-
-
-
Scalance W700 Firmware (1) Search CVE
-
-
-
-
Simatic Cp 443-1 Adv Firmware (1) Search CVE
-
-
-
-
Simatic Cp 343-1 Std Firmware (1) Search CVE
-
-
-
-
Simatic Et 200sp Firmware (1) Search CVE
-
-
-
-
Simatic Et 200pro Firmware (1) Search CVE
-
-
-
-
Simatic Rf650r Firmware (1) Search CVE
-
-
-
-
Scalance X408 Firmware (1) Search CVE
-
-
-
-
Simatic Teleservice Adapter Ie Advanced Modem Firmware (1) Search CVE
-
-
-
-
Sinamics G110m Firmware (1) Search CVE
-
4.7
-
-
Scalance S615 Firmware (1) Search CVE
-
-
-
-
Simatic Cp 1604 Firmware (1) Search CVE
-
-
-
-
Scalance X200 Firmware (1) Search CVE
-
-
-
-
Softnet Profinet Io Firmware (1) Search CVE
-
-
-
-
Sinamics V90 W. Pn Firmware (1) Search CVE
-
-
-
-
Simatic Cp 1542sp-1 Irc Firmware (1) Search CVE
-
-
-
-
Simatic Cp 1543sp-1 Firmware (1) Search CVE
-
-
-
-
Simatic Cm 1542-1 Firmware (1) Search CVE
-
-
-
-
Simatic Cp 1616 Firmware (1) Search CVE
-
-
-
-
Sinamics G150 Firmware (1) Search CVE
-
4.8
-
-
Simatic S7-1500 Software Controller Firmware (1) Search CVE
-
-
-
-
Sinamics S150 Firmware (1) Search CVE
-
4.8
-
-
Sirius Soft Starter 3rw44 Pn Firmware (1) Search CVE
-
-
-
-
Simatic Cp 1542sp-1 Firmware (1) Search CVE
-
-
-
-
Simatic S7-1200 Firmware (1) Search CVE
-
-
-
-
Simatic Rf680r Firmware (1) Search CVE
-
-
-
-
Sinumerik 840d Sl Firmware (2) Search CVE
-
4.7
-
4.5
-
-
Simatic Winac Rtx 2010 Firmware (1) Search CVE
-
-
-
-
Simatic Et 200al Firmware (1) Search CVE
-
-
-
-
Simatic Hmi Comfort Panels (1) Search CVE
-
-
-
-
Ek-ertec 200p Pn Io Firmware (1) Search CVE
-
4.4.0
-
-
Sitop Psu8600 Firmware (1) Search CVE
-
-
-
-
Sinamics G120%28c%2fp%2fd%29 W. Pn Firmware (1) Search CVE
-
4.7
-
-
Ie%2fas-i Link Pn Io Firmware (1) Search CVE
-
-
-
-
Simatic S7-300 Firmware (1) Search CVE
-
-
-
-
Scalance X200 Irt Firmware (1) Search CVE
-
-
-
-
Scalance X300 Firmware (1) Search CVE
-
-
-
-
Simatic S7-400 Firmware (1) Search CVE
-
-
-
-
Ie%2fpb-link Firmware (1) Search CVE
-
-
-
-
Sirius Act 3su1 Firmware (1) Search CVE
-
-
-
-
Simatic S7-1500 Firmware (1) Search CVE
-
-
-
-
Simatic Cp 1243-1 Firmware (1) Search CVE
-
-
-
-
Sinamics S110 W. Pn Firmware (1) Search CVE
-
-
-
-
Sirius Motor Starter M200d Profinet Firmware (1) Search CVE
-
-
-
-
Simatic Rf685r Firmware (1) Search CVE
-
-
-
-
Simatic Et 200ecopn Firmware (1) Search CVE
-
-
-
-
Simatic Cp 343-1 Lean Firmware (1) Search CVE
-
-
-
-
Simotion Firmware (1) Search CVE
-
4.5
-
-
Sinamics G130 Firmware (1) Search CVE
-
4.8
-
-
References
History of changes
Date | Event | ||
---|---|---|---|
2018-05-11 01:29 | |||
2018-03-07 02:29 |
|
||
2018-03-01 02:29 |
|
||
2018-02-24 02:29 |
|
||
2018-01-26 02:29 | |||
2018-01-25 02:29 |
|
||
2018-01-19 02:29 |
|
||
2017-12-30 02:29 |
|
||
2017-08-17 06:36 |
|
||
2017-07-08 05:31 |
1 added
|
||
2017-06-17 05:27 |
|
||
2017-05-11 01:29 |
New CVE |