ID

VAR-190001-0219


TITLE

Siemens SIMATIC S7-300 Hardcoded Certificate Security Bypass Vulnerability

Trust: 1.0

sources: IVD: 7d7bcc5e-463f-11e9-9309-000c29342cb1 // IVD: 6b8ed190-1f8d-11e6-abef-000c29c66e3d // CNNVD: CNNVD-201108-076

DESCRIPTION

A hard-coded certificate security bypass vulnerability exists in Siemens SIMATIC S7-300. A remote attacker could exploit the vulnerability to access an affected device

Trust: 1.17

sources: CNVD: CNVD-2011-6248 // BID: 48984 // IVD: 7d7bcc5e-463f-11e9-9309-000c29342cb1 // IVD: 6b8ed190-1f8d-11e6-abef-000c29c66e3d

IOT TAXONOMY

category:['ICS']sub_category: -

Trust: 1.0

sources: IVD: 7d7bcc5e-463f-11e9-9309-000c29342cb1 // IVD: 6b8ed190-1f8d-11e6-abef-000c29c66e3d // CNVD: CNVD-2011-6248

AFFECTED PRODUCTS

vendor:siemensmodel:simatic s7-300scope: - version: -

Trust: 0.6

vendor:siemensmodel:simatic s7-300scope:eqversion:*

Trust: 0.4

vendor:siemensmodel:simatic s7-300scope:eqversion:0

Trust: 0.3

sources: IVD: 7d7bcc5e-463f-11e9-9309-000c29342cb1 // IVD: 6b8ed190-1f8d-11e6-abef-000c29c66e3d // CNVD: CNVD-2011-6248 // BID: 48984

CVSS

SEVERITY

CVSSV2

CVSSV3

CNVD: CNVD-2011-6248
value: HIGH

Trust: 0.6

IVD: 7d7bcc5e-463f-11e9-9309-000c29342cb1
value: HIGH

Trust: 0.2

IVD: 6b8ed190-1f8d-11e6-abef-000c29c66e3d
value: HIGH

Trust: 0.2

CNVD: CNVD-2011-6248
severity: HIGH
baseScore: 7.5
vectorString: AV:N/AC:L/AU:N/C:P/I:P/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 10.0
impactScore: 6.4
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

IVD: 7d7bcc5e-463f-11e9-9309-000c29342cb1
severity: HIGH
baseScore: 7.5
vectorString: AV:N/AC:L/AU:N/C:P/I:P/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 10.0
impactScore: 6.4
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.9 [IVD]

Trust: 0.2

IVD: 6b8ed190-1f8d-11e6-abef-000c29c66e3d
severity: HIGH
baseScore: 7.5
vectorString: AV:N/AC:L/AU:N/C:P/I:P/A:P
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 10.0
impactScore: 6.4
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.9 [IVD]

Trust: 0.2

sources: IVD: 7d7bcc5e-463f-11e9-9309-000c29342cb1 // IVD: 6b8ed190-1f8d-11e6-abef-000c29c66e3d // CNVD: CNVD-2011-6248

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-201108-076

TYPE

permissions and access control

Trust: 0.6

sources: CNNVD: CNNVD-201108-076

PATCH

title:Siemens SIMATIC S7-300 hard-coded certificate security bypass vulnerability patchurl:https://www.cnvd.org.cn/patchinfo/show/35947

Trust: 0.6

sources: CNVD: CNVD-2011-6248

EXTERNAL IDS

db:BIDid:48984

Trust: 1.5

db:CNVDid:CNVD-2011-6248

Trust: 1.0

db:ICS CERTid:ICSA-11-223-01A

Trust: 0.6

db:CNNVDid:CNNVD-201108-076

Trust: 0.6

db:ICS CERT ALERTid:ICS-ALERT-11-204-01B

Trust: 0.3

db:IVDid:7D7BCC5E-463F-11E9-9309-000C29342CB1

Trust: 0.2

db:IVDid:6B8ED190-1F8D-11E6-ABEF-000C29C66E3D

Trust: 0.2

sources: IVD: 7d7bcc5e-463f-11e9-9309-000c29342cb1 // IVD: 6b8ed190-1f8d-11e6-abef-000c29c66e3d // CNVD: CNVD-2011-6248 // BID: 48984 // CNNVD: CNNVD-201108-076

REFERENCES

url:http://www.securityfocus.com/bid/48984

Trust: 1.2

url:https://www.industry.siemens.com/topics/global/en/industrial-security/news-alerts/documents/summary_on_ics_alert_icsa-11-223-01a.pdf

Trust: 0.6

url:http://threatpost.com/en_us/blogs/black-hat-remote-dos-backdoor-easter-egg-among-newly-discovered-siemens-holes-080311

Trust: 0.3

url:http://www.us-cert.gov/control_systems/pdf/ics-alert-11-204-01b.pdf

Trust: 0.3

sources: CNVD: CNVD-2011-6248 // BID: 48984 // CNNVD: CNNVD-201108-076

CREDITS

Dillion Beresford

Trust: 0.9

sources: BID: 48984 // CNNVD: CNNVD-201108-076

SOURCES

db:IVDid:7d7bcc5e-463f-11e9-9309-000c29342cb1
db:IVDid:6b8ed190-1f8d-11e6-abef-000c29c66e3d
db:CNVDid:CNVD-2011-6248
db:BIDid:48984
db:CNNVDid:CNNVD-201108-076

LAST UPDATE DATE

2022-05-17T02:02:15.874000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2011-6248date:2016-09-13T00:00:00
db:BIDid:48984date:2011-08-03T00:00:00
db:CNNVDid:CNNVD-201108-076date:2011-08-05T00:00:00

SOURCES RELEASE DATE

db:IVDid:7d7bcc5e-463f-11e9-9309-000c29342cb1date:2011-08-05T00:00:00
db:IVDid:6b8ed190-1f8d-11e6-abef-000c29c66e3ddate:2011-08-05T00:00:00
db:CNVDid:CNVD-2011-6248date:2011-08-05T00:00:00
db:BIDid:48984date:2011-08-03T00:00:00
db:CNNVDid:CNNVD-201108-076date:1900-01-01T00:00:00