CVE-2020-7584
 
Severity Score
7.5
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
A vulnerability has been identified in SIMATIC S7-200 SMART CPU family (All versions >= V2.2 < V2.5.1). Affected devices do not properly handle large numbers of new incomming connections and could crash under certain circumstances. An attacker may leverage this to cause a Denial-of-Service situation.
Se ha identificado una vulnerabilidad en la familia de CPU SIMATIC S7-200 SMART (Todas las versiones posteriores e incluyendo a V2.2 anteriores a V2.5.1). Los dispositivos afectados no manejan apropiadamente un gran número de nuevas conexiones entrantes y podrían bloquearse bajo determinadas circunstancias. Un atacante puede aprovechar esto para causar una situación de Denegación de Servicio
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2020-01-21 CVE Reserved
- 2020-07-14 CVE Published
- 2023-03-30 EPSS Updated
- 2024-08-04 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-400: Uncontrolled Resource Consumption
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://cert-portal.siemens.com/productcert/pdf/ssa-589181.pdf | 2020-07-17 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Siemens Search vendor "Siemens" | Simatic S7-200 Smart Sr Cpu Firmware Search vendor "Siemens" for product "Simatic S7-200 Smart Sr Cpu Firmware" | >= 2.2 < 2.5.1 Search vendor "Siemens" for product "Simatic S7-200 Smart Sr Cpu Firmware" and version " >= 2.2 < 2.5.1" | - |
Affected
| in | Siemens Search vendor "Siemens" | Simatic S7-200 Smart Sr Cpu Search vendor "Siemens" for product "Simatic S7-200 Smart Sr Cpu" | - | - |
Safe
|
Siemens Search vendor "Siemens" | Simatic S7-200 Smart St Cpu Firmware Search vendor "Siemens" for product "Simatic S7-200 Smart St Cpu Firmware" | >= 2.2 < 2.5.1 Search vendor "Siemens" for product "Simatic S7-200 Smart St Cpu Firmware" and version " >= 2.2 < 2.5.1" | - |
Affected
| in | Siemens Search vendor "Siemens" | Simatic S7-200 Smart St Cpu Search vendor "Siemens" for product "Simatic S7-200 Smart St Cpu" | - | - |
Safe
|