QID 591090
Date Published: 2022-10-11
QID 591090: Siemens SIMATIC S7-1200 CPU Multiple Vulnerabilities (SSA-625789)
AFFECTED PRODUCTS
SIMATIC S7-1200 CPU family (incl. SIPLUS variants): All versions prior to V2.0.2
SIMATIC S7-1200 CPU family (incl. SIPLUS variants): All versions prior to V2.0.3 only affected by SVE-2011-0001
QID Detection Logic (Authenticated):
QID checks for the Vulnerable version of using passive scanning
Security experts have examined the SIMATIC S7-1200 Programmable Logic Controller (PLC). This research has revealed some weaknesses in the SIMATIC S71200 CPU communication and authentication functions. Once the automation network is compromised it is possible to demonstrate the following weaknesses using a remote exploit: - Trigger CPU functions by record and playback of legitimate network communication - Place CPU in stop/defect state by causing a communications error A remote exploit is a type of attack that can be launched from one computer against another computer across a network. For example, a PC with access to the automation network could be used to launch a remote exploit against a PLC.
Customers are advised to refer to CERT MITIGATIONS section ssa-625789 for affected packages and patching details.
CVEs related to QID 591090
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| ssa-625789 |
|