MEDIUM · 6.1

CVE-2012-1800

Stack-based buffer overflow in the Profinet DCP protocol implementation on the Siemens Scalance S Security Module firewall S602 V2, S612 V2, and S613 V2 with firmware before 2.3.0.3 allows remote atta...

Vulnerability Description

Stack-based buffer overflow in the Profinet DCP protocol implementation on the Siemens Scalance S Security Module firewall S602 V2, S612 V2, and S613 V2 with firmware before 2.3.0.3 allows remote attackers to cause a denial of service (device outage) or possibly execute arbitrary code via a crafted DCP frame.

CVSS Score

6.1

MEDIUM

AV:A/AC:L/Au:N/C:N/I:N/A:C
Confidentiality
NONE
Integrity
NONE
Availability
COMPLETE

Affected Products

VendorProductVersions
SiemensScalance S Firmware<= 2.3.0
SiemensScalance S602v2
SiemensScalance S612v2
SiemensScalance S613v2

Related Weaknesses (CWE)

References

FAQ

What is CVE-2012-1800?

CVE-2012-1800 is a vulnerability with a CVSS score of 6.1 (MEDIUM). Stack-based buffer overflow in the Profinet DCP protocol implementation on the Siemens Scalance S Security Module firewall S602 V2, S612 V2, and S613 V2 with firmware before 2.3.0.3 allows remote atta...

How severe is CVE-2012-1800?

CVE-2012-1800 has been rated MEDIUM with a CVSS base score of 6.1/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2012-1800?

Check the references section above for vendor advisories and patch information. Affected products include: Siemens Scalance S Firmware, Siemens Scalance S602, Siemens Scalance S612, Siemens Scalance S613.