Siemens SIMATIC S7-1200 PLC Systems Replay Security Bypass and Denial of Service Vulnerabilities
BID:47993
Info
Siemens SIMATIC S7-1200 PLC Systems Replay Security Bypass and Denial of Service Vulnerabilities
| Bugtraq ID: | 47993 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | May 18 2011 12:00AM |
| Updated: | Jul 22 2011 05:20PM |
| Credit: | Dillon Beresford |
| Vulnerable: |
Siemens SIMATIC S7-400 0 Siemens SIMATIC S7-300 0 Siemens SIMATIC S7-200 0 Siemens SIMATIC S7-1200 2.0.2 Siemens Siemens PLC Systems 0 |
| Not Vulnerable: |
Siemens SIMATIC S7-1200 2.0.3 |
Discussion
Siemens SIMATIC S7-1200 PLC Systems Replay Security Bypass and Denial of Service Vulnerabilities
Siemens SIMATIC S7-1200 Programmable Logic Controller (PLC) is prone to a security-bypass vulnerability and a denial-of-service vulnerability.
Attackers can exploit the security-bypass issue to perform unauthorized actions in the affected controller system by sending arbitrary commands through replay attacks.
Attackers can exploit the denial-of-service issue by placing the affected controller system in a stop/defect state.
Siemens SIMATIC S7-1200 Programmable Logic Controller (PLC) is prone to a security-bypass vulnerability and a denial-of-service vulnerability.
Attackers can exploit the security-bypass issue to perform unauthorized actions in the affected controller system by sending arbitrary commands through replay attacks.
Attackers can exploit the denial-of-service issue by placing the affected controller system in a stop/defect state.
Exploit / POC
Siemens SIMATIC S7-1200 PLC Systems Replay Security Bypass and Denial of Service Vulnerabilities
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Siemens SIMATIC S7-1200 PLC Systems Replay Security Bypass and Denial of Service Vulnerabilities
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
Siemens SIMATIC S7-1200 PLC Systems Replay Security Bypass and Denial of Service Vulnerabilities
References:
References:
- More vulnerabilities discovered in Siemens Scada systems (Phil Muncaster)
- SCADA Vulnerabilities in Industrial Control Systems (NSS Labs)
- Siemens Homepage (Siemens)
- Siemens SCADA hacking talk pulled over security concerns (Robert McMillan, IDG News Service)
- SIEMENS-SA-625789: Security Vulnerabilities in Siemens SIMATIC S7-1200 CPU (Siemens)
- Potential Password Security Weakness in SIMATIC Controllers (Siemens)
- Information regarding the Behaviour of SIMATIC S7-1200 in Industrial Networks (Siemens)