Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-97273
HistoryDec 13, 2023 - 12:00 a.m.

Siemens Industrial Products Web Server Denial of Service Vulnerability

2023-12-1300:00:00
China National Vulnerability Database
www.cnvd.org.cn
10
siemens
industrial products
web server
dos
vulnerability
simatic cp 1242
cp 1243
cp 1543-1
security features
firewalls
vpns
data encryption
memory allocation

AI Score

6.9

Confidence

High

EPSS

0.001

Percentile

23.1%

SIMATIC CP 1242 and CP 1243 correlation processors connect SIMATIC S7-1200 controllers to a wide area network (WAN). They provide integrated security features such as firewalls, virtual private networks (VPNs), and support for other data encryption protocols.SIMATIC CP 1543-1 communication processors connect SIMATIC S7-1500 controllers to Ethernet. They provide integrated security features such as firewalls, virtual private networks (VPNs), and support for other data encryption protocols. A denial of service vulnerability exists in the Siemens Industrial Products Web server due to the Web server implementation of the affected products failing to properly free allocated memory after use. An attacker could exploit the vulnerability to cause a denial of service.

AI Score

6.9

Confidence

High

EPSS

0.001

Percentile

23.1%

Related for CNVD-2023-97273