HIGH · 7.1

CVE-2014-5074

Siemens SIMATIC S7-1500 CPU devices with firmware before 1.6 allow remote attackers to cause a denial of service (device restart and STOP transition) via crafted TCP packets.

Vulnerability Description

Siemens SIMATIC S7-1500 CPU devices with firmware before 1.6 allow remote attackers to cause a denial of service (device restart and STOP transition) via crafted TCP packets.

CVSS Score

7.1

HIGH

AV:N/AC:M/Au:N/C:N/I:N/A:C
Confidentiality
NONE
Integrity
NONE
Availability
COMPLETE

Affected Products

VendorProductVersions
SiemensSimatic S7-1500 Cpu Firmware<= 1.5.1
SiemensSimatic S7-1511-1 Pn Cpu-
SiemensSimatic S7-1513-1 Pn Cpu-
SiemensSimatic S7-1515-2 Pn Cpu-
SiemensSimatic S7-1516-3 Pn\/Dp Cpu-
SiemensSimatic S7-1516F-3 Pn\/Dp Cpu-
SiemensSimatic S7-1518-4 Pn\/Dp Cpu-
SiemensSimatic S7-1518F-4 Pn\/Dp Cpu-

References

FAQ

What is CVE-2014-5074?

CVE-2014-5074 is a vulnerability with a CVSS score of 7.1 (HIGH). Siemens SIMATIC S7-1500 CPU devices with firmware before 1.6 allow remote attackers to cause a denial of service (device restart and STOP transition) via crafted TCP packets.

How severe is CVE-2014-5074?

CVE-2014-5074 has been rated HIGH with a CVSS base score of 7.1/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2014-5074?

Check the references section above for vendor advisories and patch information. Affected products include: Siemens Simatic S7-1500 Cpu Firmware, Siemens Simatic S7-1511-1 Pn Cpu, Siemens Simatic S7-1513-1 Pn Cpu, Siemens Simatic S7-1515-2 Pn Cpu, Siemens Simatic S7-1516-3 Pn\/Dp Cpu.