CVE-2016-7987

Severity CVSS v4.0:
Pending analysis
Type:
CWE-19 Data Handling
Publication date:
13/02/2017
Last modified:
20/04/2025

Description

An issue was discovered in Siemens ETA4 firmware (all versions prior to Revision 08) of the SM-2558 extension module for: SICAM AK, SICAM TM 1703, SICAM BC 1703, and SICAM AK 3. Specially crafted packets sent to Port 2404/TCP could cause the affected device to go into defect mode. A cold start might be required to recover the system, a Denial-of-Service Vulnerability.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:siemens:eta4_firmware:*:*:*:*:*:*:*:* 07 (including)
cpe:2.3:h:siemens:sicam_ak:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:sicam_ak_3:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:sicam_bc_1703:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:sicam_tm_1703:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:eta2_firmware:*:*:*:*:*:*:*:* 11.0 (including)
cpe:2.3:h:siemens:sicam_ak:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:sicam_bc:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:sicam_tm:-:*:*:*:*:*:*:*