CVE-2012-1800
Last modified
CVE-2012-1800 is a vulnerability of currently unknown severity. Stack-based buffer overflow in the Profinet DCP protocol implementation on the Siemens Scalance S Security Module firewall S602 V2, S612 V2, and S613 V2 with firmware before 2.3.0.3 allows remote attackers to cause a denial of service (device outage) or possibly execute arbitrary code via a crafted DCP frame.. EPSS estimates a 1.62% chance of exploitation in the next 30 days.
Description
Stack-based buffer overflow in the Profinet DCP protocol implementation on the Siemens Scalance S Security Module firewall S602 V2, S612 V2, and S613 V2 with firmware before 2.3.0.3 allows remote attackers to cause a denial of service (device outage) or possibly execute arbitrary code via a crafted DCP frame.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Siemens | Scalance S Firmware | <= 2.3.0 |
| Siemens | Scalance S Firmware | 2.1.0 |
| Siemens | Scalance S Firmware | 2.2.0 |
| Siemens | Scalance S602 | v2 |
| Siemens | Scalance S612 | v2 |
| Siemens | Scalance S613 | v2 |
References
- http://www.us-cert.gov/control_systems/pdf/ICSA-12-102-05.pdfUS Government Resource
- http://www.us-cert.gov/control_systems/pdf/ICSA-12-102-05.pdfUS Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2012-1800?
How severe is CVE-2012-1800?
How do I fix CVE-2012-1800?
Are you affected by CVE-2012-1800?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
