ID

VAR-202412-0388


CVE

CVE-2024-49849


TITLE

Siemens Engineering Platforms Deserialization Vulnerability

Trust: 0.6

sources: CNVD: CNVD-2024-47907

DESCRIPTION

A vulnerability has been identified in SIMATIC S7-PLCSIM V16 (All versions), SIMATIC S7-PLCSIM V17 (All versions), SIMATIC STEP 7 Safety V16 (All versions), SIMATIC STEP 7 Safety V17 (All versions), SIMATIC STEP 7 Safety V18 (All versions), SIMATIC STEP 7 Safety V19 (All versions), SIMATIC STEP 7 V16 (All versions), SIMATIC STEP 7 V17 (All versions), SIMATIC STEP 7 V18 (All versions), SIMATIC STEP 7 V19 (All versions), SIMATIC WinCC Unified V16 (All versions), SIMATIC WinCC Unified V17 (All versions), SIMATIC WinCC Unified V18 (All versions), SIMATIC WinCC Unified V19 (All versions), SIMATIC WinCC V16 (All versions), SIMATIC WinCC V17 (All versions), SIMATIC WinCC V18 (All versions), SIMATIC WinCC V19 (All versions), SIMOCODE ES V16 (All versions), SIMOCODE ES V17 (All versions), SIMOCODE ES V18 (All versions), SIMOCODE ES V19 (All versions), SIMOTION SCOUT TIA V5.4 SP1 (All versions), SIMOTION SCOUT TIA V5.4 SP3 (All versions), SIMOTION SCOUT TIA V5.5 SP1 (All versions), SIMOTION SCOUT TIA V5.6 SP1 (All versions), SINAMICS Startdrive V16 (All versions), SINAMICS Startdrive V17 (All versions), SINAMICS Startdrive V18 (All versions), SINAMICS Startdrive V19 (All versions), SIRIUS Safety ES V17 (TIA Portal) (All versions), SIRIUS Safety ES V18 (TIA Portal) (All versions), SIRIUS Safety ES V19 (TIA Portal) (All versions), SIRIUS Soft Starter ES V17 (TIA Portal) (All versions), SIRIUS Soft Starter ES V18 (TIA Portal) (All versions), SIRIUS Soft Starter ES V19 (TIA Portal) (All versions), TIA Portal Cloud V16 (All versions), TIA Portal Cloud V17 (All versions), TIA Portal Cloud V18 (All versions), TIA Portal Cloud V19 (All versions). Affected products do not properly sanitize user-controllable input when parsing log files. This could allow an attacker to cause a type confusion and execute arbitrary code within the affected application. SIMATIC S7-PLCSIM simulates S7-1200, S7-1500 and some other PLC derivatives and is shipped as part of SIMATIC STEP 7. SIMATIC STEP 7 (TIA Portal) is an engineering software for configuring and programming SIMATIC controllers. SIMOCODE ES is the central software package for configuration, commissioning, operation and diagnostics of SIMOCODE-pro. SINAMICS Startdrive commissioning software is the engineering tool for integrating SINAMICS drives in TIA Portal. Totally Integrated Automation Portal (TIA Portal) is a PC software that offers the complete range of Siemens digital automation services, from digital planning and integrated engineering to transparent operation. TIA Portal Cloud makes it possible to use the main and main option packages of TIA Portal in a virtualized environment. Local projects can be transferred to the cloud and reloaded via file sharing services

Trust: 1.44

sources: NVD: CVE-2024-49849 // CNVD: CNVD-2024-47907

IOT TAXONOMY

category:['ICS']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2024-47907

AFFECTED PRODUCTS

vendor:siemensmodel:totally integrated automation portalscope:eqversion:v16

Trust: 0.6

vendor:siemensmodel:totally integrated automation portalscope:eqversion:v17

Trust: 0.6

vendor:siemensmodel:totally integrated automation portalscope:eqversion:v18

Trust: 0.6

vendor:siemensmodel:totally integrated automation portalscope:eqversion:v19

Trust: 0.6

vendor:siemensmodel:simatic s7-plcsimscope:eqversion:v17

Trust: 0.6

vendor:siemensmodel:simatic s7-plcsimscope:eqversion:v16

Trust: 0.6

vendor:siemensmodel:simotion scout tia sp1scope:eqversion:v5.4

Trust: 0.6

sources: CNVD: CNVD-2024-47907

CVSS

SEVERITY

CVSSV2

CVSSV3

productcert@siemens.com: CVE-2024-49849
value: HIGH

Trust: 1.0

CNVD: CNVD-2024-47907
value: HIGH

Trust: 0.6

CNVD: CNVD-2024-47907
severity: HIGH
baseScore: 7.2
vectorString: AV:L/AC:L/AU:N/C:C/I:C/A:C
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 3.9
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

productcert@siemens.com: CVE-2024-49849
baseSeverity: HIGH
baseScore: 7.8
vectorString: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
attackVector: LOCAL
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: REQUIRED
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 1.8
impactScore: 5.9
version: 3.1

Trust: 1.0

sources: CNVD: CNVD-2024-47907 // NVD: CVE-2024-49849

PROBLEMTYPE DATA

problemtype:CWE-502

Trust: 1.0

sources: NVD: CVE-2024-49849

PATCH

title:Patch for Siemens Engineering Platforms Deserialization Vulnerabilityurl:https://www.cnvd.org.cn/patchInfo/show/639566

Trust: 0.6

sources: CNVD: CNVD-2024-47907

EXTERNAL IDS

db:SIEMENSid:SSA-800126

Trust: 1.6

db:NVDid:CVE-2024-49849

Trust: 1.6

db:CNVDid:CNVD-2024-47907

Trust: 0.6

sources: CNVD: CNVD-2024-47907 // NVD: CVE-2024-49849

REFERENCES

url:https://cert-portal.siemens.com/productcert/html/ssa-800126.html

Trust: 1.6

sources: CNVD: CNVD-2024-47907 // NVD: CVE-2024-49849

SOURCES

db:CNVDid:CNVD-2024-47907
db:NVDid:CVE-2024-49849

LAST UPDATE DATE

2024-12-13T23:12:08.419000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2024-47907date:2024-12-12T00:00:00
db:NVDid:CVE-2024-49849date:2024-12-10T14:30:44.780

SOURCES RELEASE DATE

db:CNVDid:CNVD-2024-47907date:2024-12-12T00:00:00
db:NVDid:CVE-2024-49849date:2024-12-10T14:30:44.780