Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-43767


A vulnerability has been identified in SIMATIC CP 1242-7 V2 (6GK7242-7KX31-0XE0) (All versions < V3.4.29), SIMATIC CP 1243-1 (6GK7243-1BX30-0XE0) (All versions < V3.4.29), SIMATIC CP 1243-1 DNP3 (incl. SIPLUS variants) (All versions < V3.4.29), SIMATIC CP 1243-1 IEC (incl. SIPLUS variants) (All versions < V3.4.29), SIMATIC CP 1243-7 LTE EU (6GK7243-7KX30-0XE0) (All versions < V3.4.29), SIMATIC CP 1243-7 LTE US (6GK7243-7SX30-0XE0) (All versions < V3.4.29), SIMATIC CP 1243-8 IRC (6GK7243-8RX30-0XE0) (All versions < V3.4.29), SIMATIC CP 1542SP-1 (6GK7542-6UX00-0XE0) (All versions < V2.3), SIMATIC CP 1542SP-1 IRC (6GK7542-6VX00-0XE0) (All versions < V2.3), SIMATIC CP 1543SP-1 (6GK7543-6WX00-0XE0) (All versions < V2.3), SIMATIC CP 443-1 (6GK7443-1EX30-0XE0) (All versions < V3.3), SIMATIC CP 443-1 (6GK7443-1EX30-0XE1) (All versions < V3.3), SIMATIC CP 443-1 Advanced (6GK7443-1GX30-0XE0) (All versions < V3.3), SIPLUS ET 200SP CP 1542SP-1 IRC TX RAIL (6AG2542-6VX00-4XE0) (All versions < V2.3), SIPLUS ET 200SP CP 1543SP-1 ISEC (6AG1543-6WX00-7XE0) (All versions < V2.3), SIPLUS ET 200SP CP 1543SP-1 ISEC TX RAIL (6AG2543-6WX00-4XE0) (All versions < V2.3), SIPLUS NET CP 1242-7 V2 (6AG1242-7KX31-7XE0) (All versions < V3.4.29), SIPLUS NET CP 443-1 (6AG1443-1EX30-4XE0) (All versions < V3.3), SIPLUS NET CP 443-1 Advanced (6AG1443-1GX30-4XE0) (All versions < V3.3), SIPLUS S7-1200 CP 1243-1 (6AG1243-1BX30-2AX0) (All versions < V3.4.29), SIPLUS S7-1200 CP 1243-1 RAIL (6AG2243-1BX30-1XE0) (All versions < V3.4.29), SIPLUS TIM 1531 IRC (6AG1543-1MX00-7XE0) (All versions < V2.3.6), TIM 1531 IRC (6GK7543-1MX00-0XE0) (All versions < V2.3.6). The webserver of the affected products contains a vulnerability that may lead to a denial of service condition. An attacker may cause a denial of service situation of the webserver of the affected product.


Published

2023-04-11T10:15:17.540

Last Modified

2024-11-21T07:27:11.520

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.5 (HIGH)

Weaknesses
  • Type: Primary
    CWE-833
  • Type: Secondary
    NVD-CWE-noinfo

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System siemens simatic_cp_1242-7_v2_firmware * Yes
Hardware siemens simatic_cp_1242-7_v2 - No
Operating System siemens simatic_cp_1243-1_firmware * Yes
Hardware siemens simatic_cp_1243-1 - No
Operating System siemens simatic_cp_1243-1_dnp3_firmware * Yes
Hardware siemens simatic_cp_1243-1_dnp3 - No
Operating System siemens simatic_cp_1243-1_iec_firmware * Yes
Hardware siemens simatic_cp_1243-1_iec - No
Operating System siemens simatic_cp_1243-7_lte_eu_firmware * Yes
Hardware siemens simatic_cp_1243-7_lte_eu - No
Operating System siemens simatic_cp_1243-7_lte_us_firmware * Yes
Hardware siemens simatic_cp_1243-7_lte_us - No
Operating System siemens simatic_cp_1243-8_irc_firmware * Yes
Hardware siemens simatic_cp_1243-8_irc - No
Operating System siemens simatic_cp_1542sp-1_firmware * Yes
Hardware siemens simatic_cp_1542sp-1 - No
Operating System siemens simatic_cp_1542sp-1_irc_firmware * Yes
Hardware siemens simatic_cp_1542sp-1_irc - No
Operating System siemens simatic_cp_1543sp-1_firmware * Yes
Hardware siemens simatic_cp_1543sp-1 - No
Operating System siemens simatic_cp_443-1_firmware < 3.3 Yes
Hardware siemens simatic_cp_443-1 - No
Operating System siemens simatic_cp_443-1_advanced_firmware < 3.3 Yes
Hardware siemens simatic_cp_443-1_advanced - No
Operating System siemens simatic_ipc_diagbase_firmware * Yes
Hardware siemens simatic_ipc_diagbase - No
Operating System siemens simatic_ipc_diagmonitor_firmware * Yes
Hardware siemens simatic_ipc_diagmonitor - No
Operating System siemens siplus_et_200sp_cp_1542sp-1_irc_tx_rail_firmware * Yes
Hardware siemens siplus_et_200sp_cp_1542sp-1_irc_tx_rail - No
Operating System siemens siplus_et_200sp_cp_1543sp-1_isec_firmware * Yes
Hardware siemens siplus_et_200sp_cp_1543sp-1_isec - No
Operating System siemens siplus_et_200sp_cp_1543sp-1_isec_tx_rail_firmware * Yes
Hardware siemens siplus_et_200sp_cp_1543sp-1_isec_tx_rail - No
Operating System siemens siplus_net_cp_1242-7_v2_firmware * Yes
Hardware siemens siplus_net_cp_1242-7_v2 - No
Operating System siemens siplus_net_cp_443-1_firmware < 3.3 Yes
Hardware siemens siplus_net_cp_443-1 - No
Operating System siemens siplus_net_cp_443-1_advanced_firmware < 3.3 Yes
Hardware siemens siplus_net_cp_443-1_advanced - No
Operating System siemens siplus_s7-1200_cp_1243-1_firmware * Yes
Hardware siemens siplus_s7-1200_cp_1243-1 - No
Operating System siemens siplus_s7-1200_cp_1243-1_rail_firmware * Yes
Hardware siemens siplus_s7-1200_cp_1243-1_rail - No
Operating System siemens siplus_tim_1531_irc_firmware < 2.3.6 Yes
Hardware siemens siplus_tim_1531_irc - No
Operating System siemens tim_1531_irc_firmware < 2.3.6 Yes
Hardware siemens tim_1531_irc - No

References