7.5
CVE-2022-40227
- EPSS 0.04%
- Published 11.10.2022 11:15:10
- Last modified 21.11.2024 07:21:06
- Source productcert@siemens.com
- Teams watchlist Login
- Open Login
A vulnerability has been identified in SIMATIC HMI Comfort Panels (incl. SIPLUS variants) (All versions < V17 Update 4), SIMATIC HMI KTP Mobile Panels (All versions < V17 Update 4), SIMATIC HMI KTP1200 Basic (All versions < V17 Update 5), SIMATIC HMI KTP400 Basic (All versions < V17 Update 5), SIMATIC HMI KTP700 Basic (All versions < V17 Update 5), SIMATIC HMI KTP900 Basic (All versions < V17 Update 5), SIPLUS HMI KTP1200 BASIC (All versions < V17 Update 5), SIPLUS HMI KTP400 BASIC (All versions < V17 Update 5), SIPLUS HMI KTP700 BASIC (All versions < V17 Update 5), SIPLUS HMI KTP900 BASIC (All versions < V17 Update 5). Affected devices do not properly validate input sent to certain services over TCP. This could allow an unauthenticated remote attacker to cause a permanent denial of service condition (requiring a device reboot) by sending specially crafted TCP packets.
Data is provided by the National Vulnerability Database (NVD)
Siemens ≫ Simatic Hmi Comfort Panels Firmware Version < 17.0
Siemens ≫ Simatic Hmi Comfort Panels Firmware Version17.0 Update-
Siemens ≫ Simatic Hmi Comfort Panels Firmware Version17.0 Updateupdate1
Siemens ≫ Simatic Hmi Comfort Panels Firmware Version17.0 Updateupdate2
Siemens ≫ Simatic Hmi Comfort Panels Firmware Version17.0 Updateupdate3
Siemens ≫ Simatic Hmi Ktp400 Basic Firmware Version < 17.0
Siemens ≫ Simatic Hmi Ktp400 Basic Firmware Version17.0 Update-
Siemens ≫ Simatic Hmi Ktp400 Basic Firmware Version17.0 Updateudpate1
Siemens ≫ Simatic Hmi Ktp400 Basic Firmware Version17.0 Updateupdate2
Siemens ≫ Simatic Hmi Ktp400 Basic Firmware Version17.0 Updateupdate3
Siemens ≫ Simatic Hmi Ktp400 Basic Firmware Version17.0 Updateupdate4
Siemens ≫ Simatic Hmi Ktp700 Basic Firmware Version < 17.0
Siemens ≫ Simatic Hmi Ktp700 Basic Firmware Version17.0 Update-
Siemens ≫ Simatic Hmi Ktp700 Basic Firmware Version17.0 Updateudpate1
Siemens ≫ Simatic Hmi Ktp700 Basic Firmware Version17.0 Updateupdate2
Siemens ≫ Simatic Hmi Ktp700 Basic Firmware Version17.0 Updateupdate3
Siemens ≫ Simatic Hmi Ktp700 Basic Firmware Version17.0 Updateupdate4
Siemens ≫ Simatic Hmi Ktp900 Basic Firmware Version < 17.0
Siemens ≫ Simatic Hmi Ktp900 Basic Firmware Version17.0 Update-
Siemens ≫ Simatic Hmi Ktp900 Basic Firmware Version17.0 Updateudpate1
Siemens ≫ Simatic Hmi Ktp900 Basic Firmware Version17.0 Updateupdate2
Siemens ≫ Simatic Hmi Ktp900 Basic Firmware Version17.0 Updateupdate3
Siemens ≫ Simatic Hmi Ktp900 Basic Firmware Version17.0 Updateupdate4
Siemens ≫ Simatic Hmi Ktp1200 Basic Firmware Version < 17.0
Siemens ≫ Simatic Hmi Ktp1200 Basic Firmware Version17.0 Update-
Siemens ≫ Simatic Hmi Ktp1200 Basic Firmware Version17.0 Updateudpate1
Siemens ≫ Simatic Hmi Ktp1200 Basic Firmware Version17.0 Updateupdate2
Siemens ≫ Simatic Hmi Ktp1200 Basic Firmware Version17.0 Updateupdate3
Siemens ≫ Simatic Hmi Ktp1200 Basic Firmware Version17.0 Updateupdate4
Siemens ≫ Simatic Hmi Ktp Mobile Panels Firmware Version < 17.0
Siemens ≫ Simatic Hmi Ktp Mobile Panels Firmware Version17.0 Update-
Siemens ≫ Simatic Hmi Ktp Mobile Panels Firmware Version17.0 Updateudpate1
Siemens ≫ Simatic Hmi Ktp Mobile Panels Firmware Version17.0 Updateupdate2
Siemens ≫ Simatic Hmi Ktp Mobile Panels Firmware Version17.0 Updateupdate3
Siemens ≫ Siplus Hmi Ktp400 Basic Firmware Version < 17.0
Siemens ≫ Siplus Hmi Ktp400 Basic Firmware Version17.0 Update-
Siemens ≫ Siplus Hmi Ktp400 Basic Firmware Version17.0 Updateudpate1
Siemens ≫ Siplus Hmi Ktp400 Basic Firmware Version17.0 Updateupdate2
Siemens ≫ Siplus Hmi Ktp400 Basic Firmware Version17.0 Updateupdate3
Siemens ≫ Siplus Hmi Ktp400 Basic Firmware Version17.0 Updateupdate4
Siemens ≫ Siplus Hmi Ktp700 Basic Firmware Version < 17.0
Siemens ≫ Siplus Hmi Ktp700 Basic Firmware Version17.0 Update-
Siemens ≫ Siplus Hmi Ktp700 Basic Firmware Version17.0 Updateudpate1
Siemens ≫ Siplus Hmi Ktp700 Basic Firmware Version17.0 Updateupdate2
Siemens ≫ Siplus Hmi Ktp700 Basic Firmware Version17.0 Updateupdate3
Siemens ≫ Siplus Hmi Ktp700 Basic Firmware Version17.0 Updateupdate4
Siemens ≫ Siplus Hmi Ktp900 Basic Firmware Version < 17.0
Siemens ≫ Siplus Hmi Ktp900 Basic Firmware Version17.0 Update-
Siemens ≫ Siplus Hmi Ktp900 Basic Firmware Version17.0 Updateudpate1
Siemens ≫ Siplus Hmi Ktp900 Basic Firmware Version17.0 Updateupdate2
Siemens ≫ Siplus Hmi Ktp900 Basic Firmware Version17.0 Updateupdate3
Siemens ≫ Siplus Hmi Ktp900 Basic Firmware Version17.0 Updateupdate4
Siemens ≫ Siplus Hmi Ktp1200 Basic Firmware Version < 17.0
Siemens ≫ Siplus Hmi Ktp1200 Basic Firmware Version17.0 Update-
Siemens ≫ Siplus Hmi Ktp1200 Basic Firmware Version17.0 Updateudpate1
Siemens ≫ Siplus Hmi Ktp1200 Basic Firmware Version17.0 Updateupdate2
Siemens ≫ Siplus Hmi Ktp1200 Basic Firmware Version17.0 Updateupdate3
Siemens ≫ Siplus Hmi Ktp1200 Basic Firmware Version17.0 Updateupdate4
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.04% | 0.113 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.