CVE-2019-10936

Severity CVSS v4.0:
Pending analysis
Type:
CWE-400 Uncontrolled Resource Consumption ('Resource Exhaustion')
Publication date:
10/10/2019
Last modified:
09/07/2024

Description

Affected devices improperly handle large amounts of specially crafted UDP packets.<br /> <br /> This could allow an unauthenticated remote attacker to trigger a denial of service condition.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:siemens:dk_standard_ethernet_controller_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:dk_standard_ethernet_controller:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:ek-ertec_200_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:ek-ertec_200:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:ek-ertec_200p_firmware:*:*:*:*:*:*:*:* 4.6 (excluding)
cpe:2.3:o:siemens:ek-ertec_200p_firmware:4.6:-:*:*:*:*:*:*
cpe:2.3:h:siemens:ek-ertec_200p:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_cfu_pa_firmware:*:*:*:*:*:*:*:* 1.2.0 (excluding)
cpe:2.3:h:siemens:simatic_cfu_pa:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_et_200al_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_et_200al:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_et_200m_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_et_200m:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_et_200mp_im_155-5_pn_ba_firmware:*:*:*:*:*:*:*:* 4.3.0 (excluding)
cpe:2.3:h:siemens:simatic_et_200mp_im_155-5_pn_ba:-:*:*:*:*:*:*:*