2020-02-11
|
CVE-2019-13946
|
Profinet-IO (PNIO) stack versions prior V06.00 do not properly limit
internal resource allocation when multiple legitimate diagnostic package
requests are sent to the DCE-RPC interface.
This could lead to a denial of service condition due to lack of memory
for devices that include a vulnerable version of the stack.
The security vulnerability could be exploited by an attacker with network
access to an affected device. Successful exploitation requires no system
privileges and no user...
|
Dk_standard_ethernet_controller, Ek\-Ertec_200_firmware, Ek\-Ertec_200p_firmware, Im_154\-3_pn_hf_firmware, Im_154\-4_pn_hf_firmware, Profinet_driver, Ruggedcom_rm1224_firmware, Scalance_m\-800_firmware, Scalance_s615_firmware, Scalance_w700_ieee_802\.11n_firmware, Scalance_x\-200irt_firmware, Scalance_x\-300_firmware, Scalance_x\-400_firmware, Scalance_xb\-200_firmware, Scalance_xc\-200_firmware, Scalance_xf\-200_firmware, Scalance_xf\-200ba_firmware, Scalance_xm\-400_firmware, Scalance_xp\-200_firmware, Scalance_xr524_firmware, Scalance_xr526_firmware, Scalance_xr528_firmware, Scalance_xr552_firmware, Scalance_xr\-300wg_firmware, Simatic_cp_1604_firmware, Simatic_cp_1616_firmware, Simatic_cp_343\-1_advanced_firmware, Simatic_cp_343\-1_erpc_firmware, Simatic_cp_343\-1_firmware, Simatic_cp_343\-1_lean_firmware, Simatic_cp_443\-1_advanced_firmware, Simatic_cp_443\-1_firmware, Simatic_cp_443\-1_opc_ua_firmware, Simatic_et200al_im_157\-1_pn_firmware, Simatic_et200ecopn_firmware, Simatic_et200m_im153\-4_pn_io_hf_firmware, Simatic_et200m_im153\-4_pn_io_st_firmware, Simatic_et200mp_im155\-5_pn_hf_firmware, Simatic_et200mp_im155\-5_pn_st_firmware, Simatic_et200pro_firmware, Simatic_et200s_firmware, Simatic_et200sp_im155\-6_pn_basic_firmware, Simatic_et200sp_im155\-6_pn_hf_firmware, Simatic_et200sp_im155\-6_pn_st_firmware, Simatic_ipc_support, Simatic_mv420_firmware, Simatic_mv440_firmware, Simatic_pn\/pn_coupler_firmware, Simatic_rf180c_firmware, Simatic_rf182c_firmware, Simatic_rf600_firmware, Sinamics_dcp_firmware
|
7.5
|
|
|
2020-04-14
|
CVE-2019-19300
|
A vulnerability has been identified in Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200, Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200P, KTK ATE530S, SIDOOR ATD430W, SIDOOR ATE530S COATED, SIDOOR ATE531S, SIMATIC ET 200AL IM 157-1 PN (6ES7157-1AB00-0AB0), SIMATIC ET 200MP IM 155-5 PN HF (6ES7155-5AA00-0AC0), SIMATIC ET 200pro IM 154-8 PN/DP CPU (6ES7154-8AB01-0AB0), SIMATIC ET 200pro IM 154-8F PN/DP CPU (6ES7154-8FB01-0AB0), SIMATIC ET 200pro IM 154-8FX PN/DP CPU...
|
Ktk_ate530s_firmware, Sidoor_atd430w_firmware, Sidoor_ate530s_coated_firmware, Sidoor_ate531s_firmware, Simatic_et200mp_im155\-5_pn_hf_firmware, Simatic_et200sp_im155\-6_mf_hf_firmware, Simatic_et200sp_im155\-6_pn\/2_hf_firmware, Simatic_et200sp_im155\-6_pn_ha_firmware, Simatic_et200sp_im155\-6_pn_hf_firmware, Simatic_et_200sp_open_controller_cpu_1515sp_pc2_firmware, Simatic_et_200sp_open_controller_cpu_1515sp_pc_firmware, Simatic_micro\-Drive_pdc_firmware, Simatic_pn\/pn_coupler_firmware, Simatic_s7\-1500, Simatic_s7\-1500_cpu_1511\-1_pn_firmware, Simatic_s7\-1500_cpu_1511f\-1_pn_firmware, Simatic_s7\-1500_cpu_1513\-1_pn_firmware, Simatic_s7\-1500_cpu_1513f\-1_pn_firmware, Simatic_s7\-1500_cpu_1515\-2_pn_firmware, Simatic_s7\-1500_cpu_1515f\-2_pn_firmware, Simatic_s7\-1500_cpu_1516\-3_pn\/dp_firmware, Simatic_s7\-1500_cpu_1516f\-3_pn\/dp_firmware, Simatic_s7\-1500_cpu_1517\-3_pn\/dp_firmware, Simatic_s7\-1500_cpu_1517f\-3_pn\/dp_firmware, Simatic_s7\-1500_cpu_1518\-4_pn\/dp_firmware, Simatic_s7\-1500_cpu_1518f\-4_pn\/dp_firmware, Simatic_s7\-300_cpu_firmware, Simatic_s7\-400_pn\/dp_firmware, Simatic_s7\-410_cpu_firmware, Simatic_tdc_cp51m1_firmware, Simatic_tdc_cpu555_firmware, Simatic_winac_rtx_\(F\)_2010_firmware, Sinamics_s\/g_control_unit_firmware
|
7.5
|
|
|