Denial-of-Service Vulnerability in SCALANCE S602, S612, S623, and S627-2M by Siemens
CVE-2019-13925
7.5HIGH
Key Information:
- Vendor
- Siemens
- Vendor
- CVE Published:
- 11 February 2020
Summary
A vulnerability has been discovered in multiple models of Siemens' SCALANCE series, which can cause significant disruption to network services. Attackers can exploit this issue by sending specially crafted packets to port 443/tcp of the vulnerable devices, leading to a Denial-of-Service condition. This vulnerability affects all SCALANCE S602, S612, S623, and S627-2M versions from V3.0 up to but not including V4.1. Organizations using these devices should take proactive measures to secure their network infrastructure and mitigate potential service interruptions.
Affected Version(s)
SCALANCE S602 All versions >= V3.0 and < V4.1
SCALANCE S612 All versions >= V3.0 and < V4.1
SCALANCE S623 All versions >= V3.0 and < V4.1
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved