Denial of Service Vulnerability in Siemens SIPROTEC 4 Products
CVE-2024-52504

8.7HIGH

What is CVE-2024-52504?

A vulnerability exists in various Siemens SIPROTEC 4 devices where improper handling of interrupted file transfer operations can lead to a denial of service. This allows an unauthenticated remote attacker to disrupt the service, requiring a device restart to restore normal operations.

Affected Version(s)

SIPROTEC 4 6MD61 0

SIPROTEC 4 6MD63 0

SIPROTEC 4 6MD66 0

References

CVSS V4

Score:
8.7
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.