Description
A vulnerability has been identified in SIMATIC MV540 H (All versions < V3.3.4), SIMATIC MV540 S (All versions < V3.3.4), SIMATIC MV550 H (All versions < V3.3.4), SIMATIC MV550 S (All versions < V3.3.4), SIMATIC MV560 U (All versions < V3.3.4), SIMATIC MV560 X (All versions < V3.3.4). Affected devices cannot properly process specially crafted IP packets sent to the devices. This could allow an unauthenticated remote attacker to cause a denial of service condition. The affected devices must be restarted manually.
Published: 2023-07-11
Score: 7.5 High
EPSS: 1.1% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-39911 A vulnerability has been identified in SIMATIC MV540 H (All versions < V3.3.4), SIMATIC MV540 S (All versions < V3.3.4), SIMATIC MV550 H (All versions < V3.3.4), SIMATIC MV550 S (All versions < V3.3.4), SIMATIC MV560 U (All versions < V3.3.4), SIMATIC MV560 X (All versions < V3.3.4). Affected devices cannot properly process specially crafted IP packets sent to the devices. This could allow an unauthenticated remote attacker to cause a denial of service condition. The affected devices must be restarted manually.
History

Tue, 12 Nov 2024 17:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Subscriptions

Siemens Simatic Mv540 H Simatic Mv540 H Firmware Simatic Mv540 S Simatic Mv540 S Firmware Simatic Mv550 H Simatic Mv550 H Firmware Simatic Mv550 S Simatic Mv550 S Firmware Simatic Mv560 U Simatic Mv560 U Firmware Simatic Mv560 X Simatic Mv560 X Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: siemens

Published:

Updated: 2024-11-12T16:53:53.862Z

Reserved: 2023-06-20T10:46:34.162Z

Link: CVE-2023-35920

cve-icon Vulnrichment

Updated: 2024-08-02T16:37:40.466Z

cve-icon NVD

Status : Modified

Published: 2023-07-11T10:15:10.543

Modified: 2024-11-21T08:08:58.953

Link: CVE-2023-35920

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses