Lucene search

K
cvelistSiemensCVELIST:CVE-2018-4850
HistoryMay 16, 2018 - 5:00 p.m.

CVE-2018-4850

2018-05-1617:00:00
CWE-20
siemens
www.cve.org
4

EPSS

0.003

Percentile

66.2%

A vulnerability has been identified in SIMATIC S7-400 (incl. F) CPU hardware version 4.0 and below (All versions), SIMATIC S7-400 (incl. F) CPU hardware version 5.0 (All firmware versions < V5.2), SIMATIC S7-400H CPU hardware version 4.5 and below (All versions). The affected CPUs improperly validate S7 communication packets which could cause a Denial-of-Service condition of the CPU. The CPU will remain in DEFECT mode until manual restart.

CNA Affected

[
  {
    "product": "SIMATIC S7-400 (incl. F) CPU hardware version 4.0 and below, SIMATIC S7-400 (incl. F) CPU hardware version 5.0, SIMATIC S7-400H CPU hardware version 4.5 and below",
    "vendor": "Siemens AG",
    "versions": [
      {
        "status": "affected",
        "version": "SIMATIC S7-400 (incl. F) CPU hardware version 4.0 and below : All versions"
      },
      {
        "status": "affected",
        "version": "SIMATIC S7-400 (incl. F) CPU hardware version 5.0 : All firmware versions < V5.2"
      },
      {
        "status": "affected",
        "version": "SIMATIC S7-400H CPU hardware version 4.5 and below : All versions"
      }
    ]
  }
]

EPSS

0.003

Percentile

66.2%

Related for CVELIST:CVE-2018-4850