HIGH · 7.5

CVE-2019-10953

ABB, Phoenix Contact, Schneider Electric, Siemens, WAGO - Programmable Logic Controllers, multiple versions. Researchers have found some controllers are susceptible to a denial-of-service attack due t...

Vulnerability Description

ABB, Phoenix Contact, Schneider Electric, Siemens, WAGO - Programmable Logic Controllers, multiple versions. Researchers have found some controllers are susceptible to a denial-of-service attack due to a flood of network packets.

CVSS Score

7.5

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
NONE
Availability
HIGH

Affected Products

VendorProductVersions
AbbPm554-Tp-Eth Firmware-
AbbPm554-Tp-Eth-
PhoenixcontactIlc 151 Eth Firmware-
PhoenixcontactIlc 151 Eth-
Schneider-ElectricModicon M221 Firmware< 1.10.0.0
Schneider-ElectricModicon M221-
Siemens6Es7211-1Ae40-0Xb0 Firmware-
Siemens6Es7211-1Ae40-0Xb0-
Siemens6Es7314-6Eh04-0Ab0 Firmware-
Siemens6Es7314-6Eh04-0Ab0-
Siemens6Ed1052-1Cc01-0Ba8 Firmware-
Siemens6Ed1052-1Cc01-0Ba8-
WagoKnx Ip Firmware-
WagoKnx Ip-
WagoPfc100 Firmware-
WagoPfc100-
WagoEthernet Firmware-
WagoEthernet-
WagoBacnet\/Ip Firmware-
WagoBacnet\/Ip-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2019-10953?

CVE-2019-10953 is a vulnerability with a CVSS score of 7.5 (HIGH). ABB, Phoenix Contact, Schneider Electric, Siemens, WAGO - Programmable Logic Controllers, multiple versions. Researchers have found some controllers are susceptible to a denial-of-service attack due t...

How severe is CVE-2019-10953?

CVE-2019-10953 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2019-10953?

Check the references section above for vendor advisories and patch information. Affected products include: Abb Pm554-Tp-Eth Firmware, Abb Pm554-Tp-Eth, Phoenixcontact Ilc 151 Eth Firmware, Phoenixcontact Ilc 151 Eth, Schneider-Electric Modicon M221 Firmware.