QID 590942

Date Published: 2022-07-22

QID 590942: Siemens SIMATIC S7-1200 CPU Protection Mechanism Failure Vulnerability (SSA-833048) (ICSA-16-075-01)

AFFECTED PRODUCTS
Siemens reports that the vulnerability affects the following SIMATIC products:
SIMATIC S7-1200 CPU family: All versions prior to V4.0

QID Detection Logic (Authenticated):
QID checks for the Vulnerable version of using passive scanning

An attacker who exploits this vulnerability could circumvent user program block protection.

  • CVSS V3 rated as High - 6.5 severity.
  • CVSS V2 rated as High - 6.4 severity.
  • Solution

    Customers are advised to refer to CERT MITIGATIONS section ICSA-16-075-01 for affected packages and patching details.

    Vendor References

    CVEs related to QID 590942

    Software Advisories
    Advisory ID Software Component Link
    ICSA-16-075-01 URL Logo www.us-cert.gov/ics/advisories/ICSA-16-075-01