Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2016-9158


A vulnerability has been identified in SIMATIC S7-300 CPU family (All versions), SIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants) (All versions), SIMATIC S7-400 PN/DP V6 and below CPU family (incl. SIPLUS variants) (All versions), SIMATIC S7-400 PN/DP V7 CPU family (incl. SIPLUS variants) (All versions), SIMATIC S7-400 V6 and earlier CPU family (All versions), SIMATIC S7-400 V7 CPU family (All versions). Specially crafted packets sent to port 80/tcp could cause the affected devices to go into defect mode. A cold restart is required to recover the system.


Published

2016-12-17T03:59:00.187

Last Modified

2025-04-12T10:46:40.837

Status

Deferred

Source

[email protected]

Severity

CVSSv3.0: 7.5 (HIGH)

CVSSv2 Vector

AV:N/AC:L/Au:N/C:N/I:N/A:C

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: NONE
  • Availability Impact: COMPLETE
Exploitability Score

10.0

Impact Score

6.9

Weaknesses
  • Type: Secondary
    CWE-20
  • Type: Primary
    CWE-20

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System siemens simatic_s7-300_cpu_firmware - Yes
Hardware siemens simatic_s7-300_cpu_312 - No
Hardware siemens simatic_s7-300_cpu_314 - No
Hardware siemens simatic_s7-300_cpu_315-2_dp - No
Hardware siemens simatic_s7-300_cpu_315-2_pn\/dp - No
Hardware siemens simatic_s7-300_cpu_317-_2_dp - No
Hardware siemens simatic_s7-300_cpu_317-2_pn\/dp - No
Hardware siemens simatic_s7-300_cpu_319-3_pn\/dp - No
Operating System siemens simatic_s7-400_cpu_firmware - Yes
Hardware siemens simatic_s7-400_cpu_412-1 - No
Hardware siemens simatic_s7-400_cpu_412-2 - No
Hardware siemens simatic_s7-400_cpu_412-2_pn - No
Hardware siemens simatic_s7-400_cpu_414-2 - No
Hardware siemens simatic_s7-400_cpu_414-3 - No
Hardware siemens simatic_s7-400_cpu_414-3_pn\/dp - No
Hardware siemens simatic_s7-400_cpu_416-2 - No
Hardware siemens simatic_s7-400_cpu_416-3 - No
Hardware siemens simatic_s7-400_cpu_416-3_pn\/dp - No
Hardware siemens simatic_s7-400_cpu_416f-2 - No
Hardware siemens simatic_s7-400_cpu_416f-3_pn\/dp - No
Hardware siemens simatic_s7-400_cpu_417-4 - No

References