Vulnerability Description
A vulnerability has been identified in SIMATIC Energy Manager Basic (All versions < V7.5), SIMATIC Energy Manager PRO (All versions < V7.5), SIMATIC IPC DiagBase (All versions), SIMATIC IPC DiagMonitor (All versions), SIMIT V10 (All versions), SIMIT V11 (All versions < V11.1). Unified Automation .NET based OPC UA Server SDK before 3.2.2 used in Siemens products are affected by a similar vulnerability as documented in CVE-2023-27321 for the OPC Foundation UA .NET Standard implementation. A successful attack may lead to high load situation and memory exhaustion, and may block the server.
CVSS Score
MEDIUM
Related Weaknesses (CWE)
References
- https://cert-portal.siemens.com/productcert/html/ssa-088132.html
- https://cert-portal.siemens.com/productcert/html/ssa-088132.html
FAQ
What is CVE-2023-52891?
CVE-2023-52891 is a vulnerability with a CVSS score of 5.3 (MEDIUM). A vulnerability has been identified in SIMATIC Energy Manager Basic (All versions < V7.5), SIMATIC Energy Manager PRO (All versions < V7.5), SIMATIC IPC DiagBase (All versions), SIMATIC IPC DiagMonito...
How severe is CVE-2023-52891?
CVE-2023-52891 has been rated MEDIUM with a CVSS base score of 5.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-52891?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.