• 1
  • 2 (current)
Dienstag, 08.01.2019
Titel
SSA-559174 (Last Update: 2019-01-08): Multiple Vulnerabilities in CP1604 and CP1616 devices
Veröffentlicht
8. Januar 2019 01:00
Text
Multiple vulnerabilities have been identified in SIEMENS CP1604 and CP1616 devices. The most severe of these vulnerabilities could allow an attacker to extract internal communication data or cause a Denial-of-Service condition.
Titel
SSA-346262 (Last Update: 2019-01-08): Denial-of-Service in Industrial Products
Veröffentlicht
8. Januar 2019 01:00
Text
Several industrial products are affected by a vulnerability that could allow remote attackers to conduct a Denial-of-Service (DoS) attack by sending specially crafted packets to port 161/udp (SNMP). Siemens has released updates for several affected products, and recommends that customers update to the new version. Siemens is preparing further updates ...
Titel
SSA-535640 (Last Update: 2019-01-08): Vulnerability in Industrial Products
Veröffentlicht
8. Januar 2019 01:00
Text
Various industrial products use the Discovery Service of the OPC UA protocol stack by the OPC foundation https://github.com/OPCFoundation/UA-.NETStandard and could therefore be affected by the remote resource consumption attacks (CVE-2017-12069).
Titel
SSA-348629 (Last Update: 2019-01-08): Denial-of-Service Vulnerability in SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional and SIMATIC NET PC Software
Veröffentlicht
8. Januar 2019 01:00
Text
A Denial-of-Service vulnerability has been identified in SIMATIC PCS 7, SIMATIC WinCC, SIMATIC WinCC Runtime Professional and SIMATIC NET PC-Software. Siemens has released updates for several affected products and recommends that customers update to the new version. Siemens is preparing further updates and recommends specific countermeasures until patches are available.
Titel
SSA-181018 (Last Update: 2019-01-08): Heap Overflow Vulnerability in SCALANCE X switches, RUGGEDCOM WiMAX, RFID 181-EIP, and SIMATIC RF182C
Veröffentlicht
8. Januar 2019 01:00
Text
SCALANCE X switches, RUGGEDCOM WiMAX, RFID 181-EIP, and SIMATIC RF182C are affected by a vulnerability that could allow an unprivileged attacker located in the same local network segment (OSI Layer 2) to gain system privileges by sending a specially crafted DHCP response to a client's DHCP request. Siemens has released ...
Titel
SSA-325546 (Last Update: 2019-01-08): Denial-of-Service Vulnerabilities in EN100 Ethernet Communication Module of SWT3000
Veröffentlicht
8. Januar 2019 01:00
Text
The firmware variant IEC 61850 of the EN100 Ethernet communication module for SWT 3000 is affected by security vulnerabilities which could allow an attacker to conduct a Denial-of-Service attack over the network. Siemens has released updates for several affected products, is working on updates for the remaining affected products, and ...
Titel
SSA-306710 (Last Update: 2019-01-08): Denial-of-Service Vulnerability in SIMATIC S7-300 CPU
Veröffentlicht
8. Januar 2019 01:00
Text
Siemens has released a firmware update for the SIMATIC S7-300 CPU family which fixes a vulnerability that could allow remote attackers to perform a Denial-of-Service attack.
Titel
SSA-180635 (Last Update: 2019-01-08): Denial-of-Service Vulnerabilities in S7-1500 CPU
Veröffentlicht
8. Januar 2019 01:00
Text
Older versions of the S7-1500 CPU are affected by two Denial-of-Service vulnerabilities. Siemens has released updates for the currently supported hardware versions.
Titel
SSA-293562 (Last Update: 2019-01-08): Vulnerabilities in Industrial Products
Veröffentlicht
8. Januar 2019 01:00
Text
Several industrial devices are affected by two vulnerabilities that could allow an attacker to cause a Denial-of-Service condition via PROFINET DCP network packets under certain circumstances. The precondition for this scenario is a direct layer 2 access to the affected products. PROFIBUS interfaces are not affected. Siemens has released updates ...
Titel
SSB-439005 (Last Update: 2019-01-08): Vulnerabilities in the additional GNU/Linux subsystem of the SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP
Veröffentlicht
8. Januar 2019 01:00
Text
Donnerstag, 03.01.2019
Titel
Schneider Electric Pro-face GP-Pro EX
Veröffentlicht
3. Januar 2019 16:10
Text
This advisory provides mitigation recommendations for an improper input validation vulnerability in Schneider Electric's Pro-face GP-Pro EX, an HMI screen editor and logic programming software.
Titel
Yokogawa Vnet/IP Open Communication Driver
Veröffentlicht
3. Januar 2019 16:05
Text
This advisory provides mitigation recommendations for a resource management error vulnerability in Yokogawa's Vnet/IP open communication driver.
Titel
Hetronic Nova-M
Veröffentlicht
3. Januar 2019 16:00
Text
This advisory provides mitigation recommendations for an authentication bypass by capture-relay vulnerability in Hetronic's Nova-M remote control transmitters and receivers.
  • 1
  • 2 (current)

Letzte Updates

BOSCH PSIRT
20.03.2024
CODESYS
28.06.2023
SIEMENS CERT
09.04.2024
US CERT
17.04.2024
US CERT (ICS)
18.04.2024

Nach Quelle

Archiv

2024
2023
2022
2021
2020
2019
2018
2017

Feeds