CVE-2017-2681

HIGHCVSS 7.1/10EPSS 0.91%

Last modified

CVE-2017-2681 is a high-severity vulnerability rated 7.1/10 on the CVSS scale. Specially crafted PROFINET DCP packets sent on a local Ethernet segment (Layer 2) to an affected product could cause a denial of service condition of that product. Human interaction is required to recover the system. EPSS estimates a 0.91% chance of exploitation in the next 30 days.

Description

Specially crafted PROFINET DCP packets sent on a local Ethernet segment (Layer 2) to an affected product could cause a denial of service condition of that product. Human interaction is required to recover the system. PROFIBUS interfaces are not affected.

Metrics

CVSS 3.1
6.5/10

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CVSS 4.0
7.1/10

CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

EPSS Probability
0.91%

55.2th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
SiemensSimatic Cp 343-1 Std Firmware< 3.1.3
SiemensSimatic Cp 343-1 Lean Firmware< 3.1.3
SiemensSimatic Cp 343-1 Adv FirmwareAll versions
SiemensSimatic Cp 443-1 Std Firmware< 3.2.17
SiemensSimatic Cp 443-1 Adv Firmware< 3.2.17
SiemensSimatic Cp 443-1 Opc-Ua FirmwareAll versions
SiemensSimatic Cp 1243-1 Firmware< 2.1.82
SiemensSimatic Cm 1542-1 Firmware< 2.0
SiemensSimatic Cp 1543sp-1 Firmware< 1.0.15
SiemensSimatic Cp 1542sp-1 Irc Firmware< 1.0.15
SiemensSimatic Cp 1543sp-1 Firmware< 2.1
SiemensSimatic Cp 1543-1 Firmware< 1.0.15
SiemensSimatic Rf650r Firmware< 3.0
SiemensSimatic Rf680r Firmware< 3.0
SiemensSimatic Rf685r Firmware< 3.0
SiemensSimatic Cp 1616 Firmware< 2.7
SiemensSimatic Cp 1604 Firmware< 2.7
SiemensSimatic Dk-16xx Pn Io Firmware< 2.7
SiemensScalance X200 Firmware< 5.2.2
SiemensScalance X200 Irt Firmware< 5.4.0
SiemensScalance X300 Firmware< 4.1.0
SiemensScalance X408 Firmware< 4.1.0
SiemensScalance X414 Firmware< 3.10.2
SiemensScalance Xm400 Firmware< 6.1
SiemensScalance Xr500 Firmware< 6.1
SiemensScalance W700 Firmware< 6.1
SiemensScalance M-800 Firmware< 4.03
SiemensScalance S615 Firmware< 4.03
SiemensSoftnet Profinet Io Firmware< 14
SiemensSoftnet Profinet Io Firmware14
SiemensIe\/Pb-Link Firmware< 3.0
SiemensIe\/As-I Link Pn Io FirmwareAll versions
SiemensSimatic Teleservice Adapter Standard Modem FirmwareAll versions
SiemensSimatic Teleservice Adapter Ie Basic Modem FirmwareAll versions
SiemensSimatic Teleservice Adapter Ie Advanced Modem FirmwareAll versions
SiemensSitop Psu8600 Firmware< 1.2.0
SiemensUps1600 Profinet Firmware< 2.2.0
SiemensSimatic Et 200al Firmware< 1.0.2
SiemensSimatic Et 200ecopn FirmwareAll versions
SiemensSimatic Et 200m FirmwareAll versions
SiemensSimatic Et 200mp Firmware< 4.0.1
SiemensSimatic Et 200pro FirmwareAll versions
SiemensSimatic Et 200s FirmwareAll versions
SiemensSimatic Et 200sp Firmware< 4.2.0
SiemensPn\/Pn Coupler Firmware< 4.0
SiemensDk Standard Ethernet Controller Firmware< 4.1.1
SiemensDk Standard Ethernet Controller Firmware4.1.1
SiemensEk-Ertec 200p Pn Io Firmware< 4.4.0
SiemensEk-Ertec 200p Pn Io Firmware4.4.0
SiemensEk-Ertec 200 Pn Io Firmware< 4.2.1

Showing 50 of 100 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2017-2681?
Specially crafted PROFINET DCP packets sent on a local Ethernet segment (Layer 2) to an affected product could cause a denial of service condition of that product. Human interaction is required to recover the system. PROFIBUS interfaces are not affected.
How severe is CVE-2017-2681?
CVE-2017-2681 has a CVSS score of 7.1/10 (HIGH severity). The EPSS model estimates a 0.91% probability of exploitation in the next 30 days.
How do I fix CVE-2017-2681?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2017-2681?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST