Buffer Overflow Vulnerability in SIMATIC and SINAMICS Products by Siemens
CVE-2022-47375
7.5HIGH
Key Information:
- Vendor
Siemens
- Status
- Vendor
- CVE Published:
- 12 December 2023
What is CVE-2022-47375?
A buffer overflow vulnerability exists in various Siemens SIMATIC PC-Station Plus and S7-400 CPU products, as well as SINAMICS S120 devices. The issue arises from the improper handling of long file names, potentially allowing an attacker to exploit this flaw. This exploitation could lead to a denial of service condition, affecting device availability and operational continuity. Users are encouraged to assess their systems and apply appropriate security measures to mitigate potential risks.
Affected Version(s)
SIMATICÂ PC-Station Plus All versions
SIMATIC S7-400 CPU 412-2 PN V7 All versions
SIMATIC S7-400 CPU 414-3 PN/DP V7 All versions