Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-28831


The OPC UA implementations (ANSI C and C++) in affected products contain an integer overflow vulnerability that could cause the application to run into an infinite loop during certificate validation. This could allow an unauthenticated remote attacker to create a denial of service condition by sending a specially crafted certificate.


Security Impact Summary

This vulnerability carries a HIGH severity rating with a CVSS v3.1 score of 7.5, indicating it can be exploited remotely over the network with relatively low complexity without requiring user interaction and does not require pre-existing privileges . The vulnerability impacts and availability (service disruption) for affected systems. Impacting 156 products from siemens, from siemens, from siemens and 153 others, organizations running these solutions should prioritize assessment and patching.

Historical Context

Reported in 2023, this vulnerability emerged during an era marked by increased sophistication in supply chain attacks, cloud infrastructure vulnerabilities, and software-as-a-service (SaaS) security challenges. Security practices during this period emphasized zero-trust architectures, container security, and API protection.


Published

2023-09-12T10:15:27.230

Last Modified

2025-08-18T14:15:26.657

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.5 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-190
  • Type: Primary
    CWE-190

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System siemens simatic_cloud_connect_7_cc712_firmware < 2.2 Yes
Hardware siemens simatic_cloud_connect_7_cc712 - No
Operating System siemens simatic_cloud_connect_7_cc716_firmware < 2.2 Yes
Hardware siemens simatic_cloud_connect_7_cc716 - No
Operating System siemens simatic_drive_controller_cpu_1504d_tf_firmware < 2.2 Yes
Hardware siemens simatic_drive_controller_cpu_1504d_tf - No
Operating System siemens simatic_drive_controller_cpu_1507d_tf_firmware < 2.9.7 Yes
Hardware siemens simatic_drive_controller_cpu_1507d_tf - No
Operating System siemens simatic_et_200sp_open_controller_cpu_firmware < 2.9.7 Yes
Hardware siemens simatic_et_200sp_open_controller_cpu - No
Operating System siemens simatic_s7-1200_cpu_firmware < 3.0.3 Yes
Hardware siemens simatic_s7-1200_cpu - No
Operating System siemens simatic_s7-1500_cpu_1510sp-1_pn_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_cpu_1510sp-1_pn - No
Operating System siemens simatic_s7-1500_cpu_1510sp_f-1_pn_firmware < 3.0.3 Yes
Hardware siemens simatic_s7-1500_cpu_1510sp_f-1_pn - No
Operating System siemens simatic_s7-1500_cpu_1511-1_pn_firmware < 21.9.7 Yes
Hardware siemens simatic_s7-1500_cpu_1511-1_pn - No
Operating System siemens simatic_s7-1500_cpu_1511c-1_pn_firmware < 30.0.0 Yes
Hardware siemens simatic_s7-1500_cpu_1511c-1_pn - No
Operating System siemens simatic_s7-1500_cpu_1511f-1_pn_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_cpu_1511f-1_pn - No
Operating System siemens simatic_s7-1500_cpu_1511t-1_pn_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_cpu_1511t-1_pn - No
Operating System siemens simatic_s7-1500_cpu_1511tf-1_pn_firmware < 3.0.3 Yes
Hardware siemens simatic_s7-1500_cpu_1511tf-1_pn - No
Operating System siemens simatic_s7-1500_cpu_1512c-1_pn_firmware < 3.0.3 Yes
Hardware siemens simatic_s7-1500_cpu_1512c-1_pn - No
Operating System siemens simatic_s7-1500_cpu_1512sp-1_pn_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_cpu_1512sp-1_pn - No
Operating System siemens simatic_s7-1500_cpu_1512sp_f-1_pn_firmware < 3.0.3 Yes
Hardware siemens simatic_s7-1500_cpu_1512sp_f-1_pn - No
Operating System siemens simatic_s7-1500_cpu_1513-1_pn_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_cpu_1513-1_pn - No
Operating System siemens simatic_s7-1500_cpu_1513f-1_pn_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_cpu_1513f-1_pn - No
Operating System siemens simatic_s7-1500_cpu_1513r-1_pn_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_cpu_1513r-1_pn - No
Operating System siemens simatic_s7-1500_cpu_1514sp-2_pn_firmware < 3.0.3 Yes
Hardware siemens simatic_s7-1500_cpu_1514sp-2_pn - No
Operating System siemens simatic_s7-1500_cpu_1514sp_f-2_pn_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_cpu_1514sp_f-2_pn - No
Operating System siemens simatic_s7-1500_cpu_1514spt-2_pn_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_cpu_1514spt-2_pn - No
Operating System siemens simatic_s7-1500_cpu_1514spt_f-2_pn_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_cpu_1514spt_f-2_pn - No
Operating System siemens simatic_s7-1500_cpu_1515-2_pn_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_cpu_1515-2_pn - No
Operating System siemens simatic_s7-1500_cpu_1515f-2_pn_firmware < 3.0.3 Yes
Hardware siemens simatic_s7-1500_cpu_1515f-2_pn - No
Operating System siemens simatic_s7-1500_cpu_1515r-2_pn_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_cpu_1515r-2_pn - No
Operating System siemens simatic_s7-1500_cpu_1515t-2_pn_firmware < 3.0.3 Yes
Hardware siemens simatic_s7-1500_cpu_1515t-2_pn - No
Operating System siemens simatic_s7-1500_cpu_1515tf-2_pn_firmware < 3.0.3 Yes
Hardware siemens simatic_s7-1500_cpu_1515tf-2_pn - No
Operating System siemens simatic_s7-1500_cpu_1516-3_pn\/dp_firmware < 3.0.3 Yes
Hardware siemens simatic_s7-1500_cpu_1516-3_pn\/dp - No
Operating System siemens simatic_s7-1500_cpu_1516f-3_pn\/dp_firmware < 3.0.3 Yes
Hardware siemens simatic_s7-1500_cpu_1516f-3_pn\/dp - No
Operating System siemens simatic_s7-1500_cpu_1516t-3_pn\/dp_firmware < 3.0.3 Yes
Hardware siemens simatic_s7-1500_cpu_1516t-3_pn\/dp - No
Operating System siemens simatic_s7-1500_cpu_1516tf-3_pn\/dp_firmware < 3.0.3 Yes
Hardware siemens simatic_s7-1500_cpu_1516tf-3_pn\/dp - No
Operating System siemens simatic_s7-1500_cpu_1517-3_pn\/dp_firmware < 3.0.3 Yes
Hardware siemens simatic_s7-1500_cpu_1517-3_pn\/dp - No
Operating System siemens simatic_s7-1500_cpu_1517f-3_pn\/dp_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_cpu_1517f-3_pn\/dp - No
Operating System siemens simatic_s7-1500_cpu_1517h-3_pn_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_cpu_1517h-3_pn - No
Operating System siemens simatic_s7-1500_cpu_1517t-3_pn\/dp_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_cpu_1517t-3_pn\/dp - No
Operating System siemens simatic_s7-1500_cpu_1517tf-3_pn\/dp_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_cpu_1517tf-3_pn\/dp - No
Operating System siemens simatic_s7-1500_cpu_1518-4_pn\/dp_firmware < 21.9.7 Yes
Hardware siemens simatic_s7-1500_cpu_1518-4_pn\/dp - No
Operating System siemens simatic_s7-1500_cpu_1518-4_pn\/dp_mfp_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_cpu_1518-4_pn\/dp_mfp - No
Operating System siemens simatic_s7-1500_cpu_1518f-4_pn\/dp_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_cpu_1518f-4_pn\/dp - No
Operating System siemens simatic_s7-1500_cpu_1518f-4_pn\/dp_mfp_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_cpu_1518f-4_pn\/dp_mfp - No
Operating System siemens simatic_s7-1500_cpu_1518hf-4_pn_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_cpu_1518hf-4_pn - No
Operating System siemens simatic_s7-1500_cpu_1518t-4_pn\/dp_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_cpu_1518t-4_pn\/dp - No
Operating System siemens simatic_s7-1500_cpu_1518tf-4_pn\/dp_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_cpu_1518tf-4_pn\/dp - No
Operating System siemens simatic_s7-1500_cpu_s7-1518-4_pn\/dp_odk_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_cpu_s7-1518-4_pn\/dp_odk - No
Operating System siemens simatic_s7-1500_cpu_s7-1518f-4_pn\/dp_odk_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_cpu_s7-1518f-4_pn\/dp_odk - No
Operating System siemens simatic_s7-1500_et_200pro_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_et_200pro - No
Operating System siemens simatic_s7-1500_software_controller_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_software_controller v2 No
Operating System siemens simatic_s7-1500_software_controller_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-1500_software_controller v3 No
Operating System siemens simatic_s7-plcsim_advanced_firmware < 2.9.7 Yes
Hardware siemens simatic_s7-plcsim_advanced - No
Operating System siemens siplus_et_200sp_cpu_1510sp-1_pn_firmware < 2.9.7 Yes
Hardware siemens siplus_et_200sp_cpu_1510sp-1_pn - No
Operating System siemens siplus_et_200sp_cpu_1510sp-1_pn_rail_firmware < 2.9.7 Yes
Hardware siemens siplus_et_200sp_cpu_1510sp-1_pn_rail - No
Operating System siemens siplus_et_200sp_cpu_1510sp_f-1_pn_firmware < 2.9.7 Yes
Hardware siemens siplus_et_200sp_cpu_1510sp_f-1_pn - No
Operating System siemens siplus_et_200sp_cpu_1510sp_f-1_pn_rail_firmware < 2.9.7 Yes
Hardware siemens siplus_et_200sp_cpu_1510sp_f-1_pn_rail - No
Operating System siemens siplus_et_200sp_cpu_1512sp-1_pn_firmware < 2.9.7 Yes
Hardware siemens siplus_et_200sp_cpu_1512sp-1_pn - No
Operating System siemens siplus_et_200sp_cpu_1512sp-1_pn_rail_firmware < 2.9.7 Yes
Hardware siemens siplus_et_200sp_cpu_1512sp-1_pn_rail - No
Operating System siemens siplus_et_200sp_cpu_1512sp_f-1_pn_firmware < 2.9.7 Yes
Hardware siemens siplus_et_200sp_cpu_1512sp_f-1_pn - No
Operating System siemens siplus_et_200sp_cpu_1512sp_f-1_pn_rail_firmware < 2.9.7 Yes
Hardware siemens siplus_et_200sp_cpu_1512sp_f-1_pn_rail - No
Operating System siemens siplus_s7-1500_cpu_1511-1_pn_firmware < 2.9.7 Yes
Hardware siemens siplus_s7-1500_cpu_1511-1_pn - No
Operating System siemens siplus_s7-1500_cpu_1511-1_pn_t1_rail_firmware < 2.9.7 Yes
Hardware siemens siplus_s7-1500_cpu_1511-1_pn_t1_rail - No
Operating System siemens siplus_s7-1500_cpu_1511-1_pn_tx_rail_firmware < 2.9.7 Yes
Hardware siemens siplus_s7-1500_cpu_1511-1_pn_tx_rail - No
Operating System siemens siplus_s7-1500_cpu_1511f-1_pn_firmware < 2.9.7 Yes
Hardware siemens siplus_s7-1500_cpu_1511f-1_pn - No
Operating System siemens siplus_s7-1500_cpu_1513-1_pn_firmware < 2.9.7 Yes
Hardware siemens siplus_s7-1500_cpu_1513-1_pn - No
Operating System siemens siplus_s7-1500_cpu_1513f-1_pn_firmware < 2.9.7 Yes
Hardware siemens siplus_s7-1500_cpu_1513f-1_pn - No
Operating System siemens siplus_s7-1500_cpu_1515f-2_pn_firmware < 2.9.7 Yes
Hardware siemens siplus_s7-1500_cpu_1515f-2_pn - No
Operating System siemens siplus_s7-1500_cpu_1515f-2_pn_rail_firmware < 2.9.7 Yes
Hardware siemens siplus_s7-1500_cpu_1515f-2_pn_rail - No
Operating System siemens siplus_s7-1500_cpu_1515f-2_pn_t2_rail_firmware < 2.9.7 Yes
Hardware siemens siplus_s7-1500_cpu_1515f-2_pn_t2_rail - No
Operating System siemens siplus_s7-1500_cpu_1515r-2_pn_firmware < 2.9.7 Yes
Hardware siemens siplus_s7-1500_cpu_1515r-2_pn - No
Operating System siemens siplus_s7-1500_cpu_1515r-2_pn_tx_rail_firmware < 2.9.7 Yes
Hardware siemens siplus_s7-1500_cpu_1515r-2_pn_tx_rail - No
Operating System siemens siplus_s7-1500_cpu_1516-3_pn\/dp_firmware < 2.9.7 Yes
Hardware siemens siplus_s7-1500_cpu_1516-3_pn\/dp - No
Operating System siemens siplus_s7-1500_cpu_1516-3_pn\/dp_rail_firmware < 2.9.7 Yes
Hardware siemens siplus_s7-1500_cpu_1516-3_pn\/dp_rail - No
Operating System siemens siplus_s7-1500_cpu_1516-3_pn\/dp_tx_rail_firmware < 2.9.7 Yes
Hardware siemens siplus_s7-1500_cpu_1516-3_pn\/dp_tx_rail - No
Operating System siemens siplus_s7-1500_cpu_1516f-3_pn\/dp_firmware < 2.9.7 Yes
Hardware siemens siplus_s7-1500_cpu_1516f-3_pn\/dp - No
Operating System siemens siplus_s7-1500_cpu_1516f-3_pn\/dp_rail_firmware < 2.9.7 Yes
Hardware siemens siplus_s7-1500_cpu_1516f-3_pn\/dp_rail - No
Operating System siemens siplus_s7-1500_cpu_1517h-3_pn_firmware < 3.0.3 Yes
Hardware siemens siplus_s7-1500_cpu_1517h-3_pn - No
Operating System siemens siplus_s7-1500_cpu_1518-4_pn\/dp_firmware < 3.0.3 Yes
Hardware siemens siplus_s7-1500_cpu_1518-4_pn\/dp - No
Operating System siemens siplus_s7-1500_cpu_1518-4_pn\/dp_mfp_firmware < 3.0.3 Yes
Hardware siemens siplus_s7-1500_cpu_1518-4_pn\/dp_mfp - No
Operating System siemens siplus_s7-1500_cpu_1518f-4_pn\/dp_firmware < 3.0.3 Yes
Hardware siemens siplus_s7-1500_cpu_1518f-4_pn\/dp - No
Operating System siemens siplus_s7-1500_cpu_1518hf-4_pn_firmware < 3.0.3 Yes
Hardware siemens siplus_s7-1500_cpu_1518hf-4_pn - No

References

How SecUtils Interprets This CVE

SecUtils normalizes and enriches National Vulnerability Database (NVD) records by standardizing vendor and product identifiers, aggregating vulnerability metadata from both NVD and MITRE sources, and providing structured context for security teams. For siemens's affected products, we extract Common Platform Enumeration (CPE) data, Common Weakness Enumeration (CWE) classifications, CVSS severity metrics, and reference data to enable rapid vulnerability prioritization and asset correlation. This record contains no exploit code, proof-of-concept instructions, or attack methodologies—only defensive intelligence necessary for patch management, risk assessment, and security operations.