CVE-2020-7593
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (V1.81.01 - V1.81.03), LOGO! 8 BM (incl. SIPLUS variants) (V1.82.01), LOGO! 8 BM (incl. SIPLUS variants) (V1.82.02). A buffer overflow vulnerability exists in the Web Server functionality of the device. A remote unauthenticated attacker could send a specially crafted HTTP request to cause a memory corruption, potentially resulting in remote code execution.
Se ha identificado una vulnerabilidad en LOGO! 8 BM (incluyendo las variantes SIPLUS) (versiones V1.81.01 - V1.81.03), LOGO! 8 BM (incluyendo las variantes SIPLUS) (versión V1.82.01), LOGO! 8 BM (incluyendo las variantes SIPLUS) (versión V1.82.02). Se presenta una vulnerabilidad de desbordamiento del búfer en la funcionalidad Web Server del dispositivo. Un atacante remoto no autenticado podría enviar una petición HTTP especialmente diseñada para causar daños en la memoria, resultando potencialmente en una ejecución de código remota
CVSS Scores
SSVC
- Decision:-
Timeline
- 2020-01-21 CVE Reserved
- 2020-07-14 CVE Published
- 2024-08-04 CVE Updated
- 2024-08-04 First Exploit
- 2024-08-23 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
CAPEC
References (2)
URL | Tag | Source |
---|
URL | Date | SRC |
---|---|---|
https://www.talosintelligence.com/vulnerability_reports/TALOS-2020-1069 | 2024-08-04 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://cert-portal.siemens.com/productcert/pdf/ssa-573753.pdf | 2020-07-22 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Siemens Search vendor "Siemens" | Logo\! 8 Bm Firmware Search vendor "Siemens" for product "Logo\! 8 Bm Firmware" | >= 1.81.01 <= 1.81.03 Search vendor "Siemens" for product "Logo\! 8 Bm Firmware" and version " >= 1.81.01 <= 1.81.03" | - |
Affected
| in | Siemens Search vendor "Siemens" | Logo\! 8 Bm Search vendor "Siemens" for product "Logo\! 8 Bm" | - | - |
Safe
|
Siemens Search vendor "Siemens" | Logo\! 8 Bm Firmware Search vendor "Siemens" for product "Logo\! 8 Bm Firmware" | 1.82.01 Search vendor "Siemens" for product "Logo\! 8 Bm Firmware" and version "1.82.01" | - |
Affected
| in | Siemens Search vendor "Siemens" | Logo\! 8 Bm Search vendor "Siemens" for product "Logo\! 8 Bm" | - | - |
Safe
|
Siemens Search vendor "Siemens" | Logo\! 8 Bm Firmware Search vendor "Siemens" for product "Logo\! 8 Bm Firmware" | 1.82.02 Search vendor "Siemens" for product "Logo\! 8 Bm Firmware" and version "1.82.02" | - |
Affected
| in | Siemens Search vendor "Siemens" | Logo\! 8 Bm Search vendor "Siemens" for product "Logo\! 8 Bm" | - | - |
Safe
|