Multiple Siemens SIMATIC WinCC Add-On Products Multiple Security Vulnerabilities
BID:102739
CVE-2017-11496 | CVE-2017-11497 | CVE-2017-11498 |Info
Multiple Siemens SIMATIC WinCC Add-On Products Multiple Security Vulnerabilities
| Bugtraq ID: | 102739 |
| Class: | Input Validation Error |
| CVE: |
CVE-2017-11496 CVE-2017-11497 CVE-2017-11498 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 18 2018 12:00AM |
| Updated: | Jan 18 2018 12:00AM |
| Credit: | Sergey Temnikov and Vladimir Dashchenko from Kaspersky Lab |
| Vulnerable: |
Siemens SIMATIC WinCC Add-On SIPAPER IT MIS 7.0 Siemens SIMATIC WinCC Add-On SICEMENT IT MIS 7.0 and Siemens SIMATIC WinCC Add-On PM-QUALITY 9.0 Siemens SIMATIC WinCC Add-On PM-OPEN TCP/IP 8.0 Siemens SIMATIC WinCC Add-On PM-OPEN PV02 1.0 Siemens SIMATIC WinCC Add-On PM-OPEN PI 7.0 Siemens SIMATIC WinCC Add-On PM-OPEN IMPORT 6.0 Siemens SIMATIC WinCC Add-On PM-OPEN HOST-S 7.0 Siemens SIMATIC WinCC Add-On PM-OPEN EXPORT 7.0 Siemens SIMATIC WinCC Add-On PM-MAINT 9.0 Siemens SIMATIC WinCC Add-On PM-CONTROL 10.0 Siemens SIMATIC WinCC Add-On PM-ANALYZE 7.0 Siemens SIMATIC WinCC Add-On PM-AGENT 5.0 Siemens SIMATIC WinCC Add-On PI CONNECT AUDIT TRAIL 1.0 Siemens SIMATIC WinCC Add-On PI CONNECT ALARM 2.0 Siemens SIMATIC WinCC Add-On Historian CONNECT ALARM 5.0 |
| Not Vulnerable: | |
Discussion
Multiple Siemens SIMATIC WinCC Add-On Products Multiple Security Vulnerabilities
Multiple Siemens SIMATIC WinCC Add-On Products are prone to the following security vulnerabilities:
1. Multiple stack-based buffer-overflow vulnerabilities
2. A denial-of-service vulnerability
Attackers can exploit these issues to execute arbitrary code within the context of affected device or cause a denial-of-service condition.
Multiple Siemens SIMATIC WinCC Add-On Products are prone to the following security vulnerabilities:
1. Multiple stack-based buffer-overflow vulnerabilities
2. A denial-of-service vulnerability
Attackers can exploit these issues to execute arbitrary code within the context of affected device or cause a denial-of-service condition.
Exploit / POC
Multiple Siemens SIMATIC WinCC Add-On Products Multiple Security Vulnerabilities
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Multiple Siemens SIMATIC WinCC Add-On Products Multiple Security Vulnerabilities
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Multiple Siemens SIMATIC WinCC Add-On Products Multiple Security Vulnerabilities
References:
References:
- Siemens Homepage (Siemens)
- ICSA-18-018-01 Siemens SIMATIC WinCC Add-On (CERT)
- SSA-127490: Vulnerabilities in SIMATIC WinCC Add-Ons (Siemens)