// For flags

CVE-2019-10953

 

Severity Score

7.5
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

ABB, Phoenix Contact, Schneider Electric, Siemens, WAGO - Programmable Logic Controllers, multiple versions. Researchers have found some controllers are susceptible to a denial-of-service attack due to a flood of network packets.

En Controladores lógicos programables de ABB, Phoenix Contact, Schneider Electric, Siemens, WAGO - , versiones múltiples. Los investigadores han encontrado que algunos controladores son susceptibles a un ataque de Denegación de Servicio (DoS) debido a una inundación de paquetes de red.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
None
Integrity
None
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2019-04-08 CVE Reserved
  • 2019-04-17 CVE Published
  • 2024-08-04 CVE Updated
  • 2024-09-07 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-400: Uncontrolled Resource Consumption
  • CWE-770: Allocation of Resources Without Limits or Throttling
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Abb
Search vendor "Abb"
Pm554-tp-eth Firmware
Search vendor "Abb" for product "Pm554-tp-eth Firmware"
--
Affected
in Abb
Search vendor "Abb"
Pm554-tp-eth
Search vendor "Abb" for product "Pm554-tp-eth"
--
Safe
Phoenixcontact
Search vendor "Phoenixcontact"
Ilc 151 Eth Firmware
Search vendor "Phoenixcontact" for product "Ilc 151 Eth Firmware"
--
Affected
in Phoenixcontact
Search vendor "Phoenixcontact"
Ilc 151 Eth
Search vendor "Phoenixcontact" for product "Ilc 151 Eth"
--
Safe
Schneider-electric
Search vendor "Schneider-electric"
Modicon M221 Firmware
Search vendor "Schneider-electric" for product "Modicon M221 Firmware"
< 1.10.0.0
Search vendor "Schneider-electric" for product "Modicon M221 Firmware" and version " < 1.10.0.0"
-
Affected
in Schneider-electric
Search vendor "Schneider-electric"
Modicon M221
Search vendor "Schneider-electric" for product "Modicon M221"
--
Safe
Siemens
Search vendor "Siemens"
6es7211-1ae40-0xb0 Firmware
Search vendor "Siemens" for product "6es7211-1ae40-0xb0 Firmware"
--
Affected
in Siemens
Search vendor "Siemens"
6es7211-1ae40-0xb0
Search vendor "Siemens" for product "6es7211-1ae40-0xb0"
--
Safe
Siemens
Search vendor "Siemens"
6es7314-6eh04-0ab0 Firmware
Search vendor "Siemens" for product "6es7314-6eh04-0ab0 Firmware"
--
Affected
in Siemens
Search vendor "Siemens"
6es7314-6eh04-0ab0
Search vendor "Siemens" for product "6es7314-6eh04-0ab0"
--
Safe
Siemens
Search vendor "Siemens"
6ed1052-1cc01-0ba8 Firmware
Search vendor "Siemens" for product "6ed1052-1cc01-0ba8 Firmware"
--
Affected
in Siemens
Search vendor "Siemens"
6ed1052-1cc01-0ba8
Search vendor "Siemens" for product "6ed1052-1cc01-0ba8"
--
Safe
Wago
Search vendor "Wago"
Knx Ip Firmware
Search vendor "Wago" for product "Knx Ip Firmware"
--
Affected
in Wago
Search vendor "Wago"
Knx Ip
Search vendor "Wago" for product "Knx Ip"
--
Safe
Wago
Search vendor "Wago"
Pfc100 Firmware
Search vendor "Wago" for product "Pfc100 Firmware"
--
Affected
in Wago
Search vendor "Wago"
Pfc100
Search vendor "Wago" for product "Pfc100"
--
Safe
Wago
Search vendor "Wago"
Ethernet Firmware
Search vendor "Wago" for product "Ethernet Firmware"
--
Affected
in Wago
Search vendor "Wago"
Ethernet
Search vendor "Wago" for product "Ethernet"
--
Safe
Wago
Search vendor "Wago"
Bacnet\/ip Firmware
Search vendor "Wago" for product "Bacnet\/ip Firmware"
--
Affected
in Wago
Search vendor "Wago"
Bacnet\/ip
Search vendor "Wago" for product "Bacnet\/ip"
--
Safe