CVE-2023-37194
Last modified
CVE-2023-37194 is a medium-severity vulnerability rated 6.7/10 on the CVSS scale. A vulnerability has been identified in SIMATIC CP 1604 (All versions), SIMATIC CP 1616 (All versions), SIMATIC CP 1623 (All versions), SIMATIC CP 1626 (All versions), SIMATIC CP 1628 (All versions). The kernel memory of affected devices is exposed to user-mode via direct memory access (DMA) which could allow a local attacker with administrative privileges to execute arbitrary code on the host system without any restrictions.. EPSS estimates a 0.18% chance of exploitation in the next 30 days.
Description
A vulnerability has been identified in SIMATIC CP 1604 (All versions), SIMATIC CP 1616 (All versions), SIMATIC CP 1623 (All versions), SIMATIC CP 1626 (All versions), SIMATIC CP 1628 (All versions). The kernel memory of affected devices is exposed to user-mode via direct memory access (DMA) which could allow a local attacker with administrative privileges to execute arbitrary code on the host system without any restrictions.
Metrics
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Siemens | Simatic Cp 1604 Firmware | All versions |
| Siemens | Simatic Cp 1616 Firmware | All versions |
| Siemens | Simatic Cp 1623 Firmware | All versions |
| Siemens | Simatic Cp 1626 Firmware | All versions |
| Siemens | Simatic Cp 1628 Firmware | All versions |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2023-37194?
How severe is CVE-2023-37194?
How do I fix CVE-2023-37194?
How Strix Helps
- Uncovering a hidden BOLA in Appsmith's snapshot logicStrix autonomously discovered a BOLA/IDOR vulnerability in Appsmith's snapshot deletion path.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2023
- CVE-2023-37187C-blosc2 before 2.9.3 was discovered to contain a NULL point…7.5
- CVE-2023-37188C-blosc2 before 2.9.3 was discovered to contain a NULL point…7.5
- CVE-2023-37189A stored cross site scripting (XSS) vulnerability in index.p…4.8
- CVE-2023-37190A stored cross-site scripting (XSS) vulnerability in Issabel…4.8
- CVE-2023-37191A stored cross-site scripting (XSS) vulnerability in Issabel…4.8
- CVE-2023-37192Memory management and protection issues in Bitcoin Core v22 …7.5
- CVE-2023-37195A vulnerability has been identified in SIMATIC CP 1604 (All …4.4
- CVE-2023-37196 A CWE-89: Improper Neutralization of Special Elements vulne…8.8
- CVE-2023-37197 A CWE-89: Improper Neutralization of Special Elements vul…8.8
- CVE-2023-37198 A CWE-94: Improper Control of Generation of Code ('Code…7.2
- CVE-2023-37199 A CWE-94: Improper Control of Generation of Code ('Code Inj…7.2
- CVE-2023-3720The Upload Media By URL WordPress plugin before 1.0.8 does n…6.5
Are you affected by CVE-2023-37194?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
