CVE-2017-6867
Summary
| CVE | CVE-2017-6867 |
|---|---|
| State | PUBLISHED |
| Assigner | siemens |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2017-05-11 10:29:00 UTC |
| Updated | 2025-04-20 01:37:25 UTC |
| Description | A vulnerability was discovered in Siemens SIMATIC WinCC (V7.3 before Upd 11 and V7.4 before SP1), SIMATIC WinCC Runtime Professional (V13 before SP2 and V14 before SP1), SIMATIC WinCC (TIA Portal) Professional (V13 before SP2 and V14 before SP1) that could allow an authenticated, remote attacker who is member of the "administrators" group to crash services by sending specially crafted messages to the DCOM interface. |
Risk And Classification
Primary CVSS: v3.0 4.9 MEDIUM from [email protected]
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
Problem Types: CWE-787 | CWE-20 | CWE-787 CWE-787: Out-of-bounds Write
| Version | Source | Type | Score | Severity | Vector |
|---|---|---|---|---|---|
| 3.0 | [email protected] | Primary | 4.9 | MEDIUM | CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H |
| 2.0 | [email protected] | Primary | 4 | AV:N/AC:L/Au:S/C:N/I:N/A:P |
CVSS v3.0 Breakdown
Attack Vector
NetworkAttack Complexity
LowPrivileges Required
HighUser Interaction
NoneScope
UnchangedConfidentiality
NoneIntegrity
NoneAvailability
HighCVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
SingleConfidentiality
NoneIntegrity
NoneAvailability
PartialAV:N/AC:L/Au:S/C:N/I:N/A:P
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Siemens | Simatic Wincc | 7.3 | All | All | All |
| Application | Siemens | Simatic Wincc | 7.4 | All | All | All |
| Application | Siemens | Simatic Wincc Runtime | 13 | sp1 | All | All |
| Application | Siemens | Simatic Wincc Runtime | 14 | All | All | All |
| Application | Siemens | Simatic Wincc Tia Portal | 13 | sp1 | All | All |
| Application | Siemens | Simatic Wincc Tia Portal | 14 | All | All | All |
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|---|---|---|---|
| CNA | Na | Siemens SIMATIC WinCC | affected Siemens SIMATIC WinCC | Not specified |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Siemens | af854a3a-2127-422b-91ae-364da2661108 | www.siemens.com | Vendor Advisory |
| cert-portal.siemens.com/productcert/pdf/ssa-523365.pdf | af854a3a-2127-422b-91ae-364da2661108 | cert-portal.siemens.com | |
| Malformed Request | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | Third Party Advisory, VDB Entry |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.