NA

CVE-2023-28766

Published: 11/04/2023 Updated: 12/03/2024
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

A vulnerability has been identified in SIPROTEC 5 6MD85 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 6MD86 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 6MD89 (CP300) (All versions >= V7.80 < V9.64), SIPROTEC 5 6MU85 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 7KE85 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 7SA82 (CP100) (All versions), SIPROTEC 5 7SA82 (CP150) (All versions < V9.40), SIPROTEC 5 7SA86 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 7SA87 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 7SD82 (CP100) (All versions), SIPROTEC 5 7SD82 (CP150) (All versions < V9.40), SIPROTEC 5 7SD86 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 7SD87 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 7SJ81 (CP100) (All versions), SIPROTEC 5 7SJ81 (CP150) (All versions < V9.40), SIPROTEC 5 7SJ82 (CP100) (All versions), SIPROTEC 5 7SJ82 (CP150) (All versions < V9.40), SIPROTEC 5 7SJ85 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 7SJ86 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 7SK82 (CP100) (All versions), SIPROTEC 5 7SK82 (CP150) (All versions < V9.40), SIPROTEC 5 7SK85 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 7SL82 (CP100) (All versions), SIPROTEC 5 7SL82 (CP150) (All versions < V9.40), SIPROTEC 5 7SL86 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 7SL87 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 7SS85 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 7ST85 (CP300) (All versions >= V7.80 < V9.64), SIPROTEC 5 7ST86 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 7SX82 (CP150) (All versions < V9.40), SIPROTEC 5 7SX85 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 7UM85 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 7UT82 (CP100) (All versions), SIPROTEC 5 7UT82 (CP150) (All versions < V9.40), SIPROTEC 5 7UT85 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 7UT86 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 7UT87 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 7VE85 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 7VK87 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 7VU85 (CP300) (All versions >= V7.80 < V9.40), SIPROTEC 5 Communication Module ETH-BA-2EL (All versions < V9.40), SIPROTEC 5 Communication Module ETH-BB-2FO (All versions < V9.40), SIPROTEC 5 Communication Module ETH-BD-2FO (All versions < V9.40), SIPROTEC 5 Compact 7SX800 (CP050) (All versions < V9.40). Affected devices lack proper validation of http request parameters of the hosted web service. An unauthenticated remote attacker could send specially crafted packets that could cause denial of service condition of the target device.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

siemens siprotec_5_6md85_firmware

siemens siprotec_5_6md86_firmware

siemens siprotec_5_6md89_firmware

siemens siprotec_5_6mu85_firmware

siemens siprotec_5_7ke85_firmware

siemens siprotec_5_7sa82_firmware

siemens siprotec_5_7sa86_firmware

siemens siprotec_5_7sa87_firmware

siemens siprotec_5_7sd82_firmware

siemens siprotec_5_7sd86_firmware

siemens siprotec_5_7sd87_firmware

siemens siprotec_5_7sj81_firmware

siemens siprotec_5_7sj82_firmware

siemens siprotec_5_7sj85_firmware

siemens siprotec_5_7sj86_firmware

siemens siprotec_5_7sk82_firmware

siemens siprotec_5_7sk85_firmware

siemens siprotec_5_7sl82_firmware

siemens siprotec_5_7sl86_firmware

siemens siprotec_5_7sl87_firmware

siemens siprotec_5_7ss85_firmware

siemens siprotec_5_7st85_firmware

siemens siprotec_5_7sx85_firmware

siemens siprotec_5_7um85_firmware

siemens siprotec_5_7ut82_firmware

siemens siprotec_5_7ut85_firmware

siemens siprotec_5_7ut86_firmware

siemens siprotec_5_7ut87_firmware

siemens siprotec_5_7ve85_firmware

siemens siprotec_5_7vk87_firmware

siemens siprotec_5_communication_module_ethba2el_firmware

siemens siprotec_5_communication_module_ethbb2fo_firmware

siemens siprotec_5_communication_module_ethbd2fo_firmware

siemens siprotec_5_compact_7sx800_firmware

siemens siprotec_5_7sa84_firmware

siemens siprotec_5_7sd84_firmware

siemens siprotec_5_7st86_firmware

siemens siprotec_5_7sx82_firmware

siemens siprotec_5_7vu85_firmware