Denial-of-Service Vulnerability in SINUMERIK 808D and 828D by Siemens
CVE-2021-37199

7.5HIGH

Key Information:

Vendor
Siemens
Vendor
CVE Published:
12 October 2021

Summary

Siemens' SINUMERIK 808D and 828D products are affected by a vulnerability that occurs when the devices fail to properly process certain specially crafted packets sent to port 102/tcp. This flaw enables attackers to disrupt the normal operation of the device, potentially leading to a denial-of-service scenario. It is critical for users of these devices to be aware of this issue and take necessary steps to protect their systems.

Affected Version(s)

SINUMERIK 808D All versions

SINUMERIK 828D All versions < V4.95

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.