Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2517▼ 428 respecto a la semana anterior
Críticas / altas1288▲ 1 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 465 respecto a la semana anterior
7 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (8.7) | 1.9% | — | Siemens DK Standard Ethernet Controller Evaluation KIT FirmwareSiemens Ek-ertec 200 Evaulation KIT FirmwareSiemens Ek-ertec 200p Evaluation KIT FirmwareSiemens Ruggedcom Rm1224 Firmware+75 | 13/7/2021 | 17/6/2026 | Affected devices contain a vulnerability that allows an unauthenticated attacker to trigger a denial of service condition. The vulnerability can be triggered if a large amount of DCP reset packets are sent to the device. | |
| Modificada | Alta (7.5) | 1.5% | — | Siemens DK Standard Ethernet ControllerSiemens Profinet DriverSiemens Simatic IPC SupportSiemens Ek-ertec 200 Firmware+48 | 11/2/2020 | 17/6/2026 | Profinet-IO (PNIO) stack versions prior V06.00 do not properly limit internal resource allocation when multiple legitimate diagnostic package requests are sent to the DCE-RPC interface. This could lead to a denial of service condition due to lack of memory for devices that include a vulnerable version of the stack.… | |
| Modificada | Alta (7.5) | 2.1% | — | Siemens DK Standard Ethernet Controller FirmwareSiemens Ek-ertec 200 FirmwareSiemens Ek-ertec 200p FirmwareSiemens Simatic CFU PA Firmware+62 | 10/10/2019 | 17/6/2026 | Affected devices improperly handle large amounts of specially crafted UDP packets. This could allow an unauthenticated remote attacker to trigger a denial of service condition. | |
| Modificada | Alta (7.5) | 1.4% | — | Siemens Cp1604 FirmwareSiemens Cp1616 FirmwareSiemens DK Standard Ethernet Controller FirmwareSiemens Ek-ertec 200 Firmware+36 | 10/10/2019 | 17/6/2026 | An attacker with network access to an affected product may cause a denial of service condition by breaking the real-time synchronization (IRT) of the affected installation. | |
| Modificada | Alta (8.7) | 3.3% | — | Siemens Simatic S7-200 FirmwareSiemens Simatic S7-400pn V6 FirmwareSiemens Simatic S7-400h V6 FirmwareSiemens Simatic S7-400pn/dp V7 Firmware+34 | 26/12/2017 | 17/6/2026 | Specially crafted packets sent to port 161/udp could cause a denial of service condition. The affected devices must be restarted manually. | |
| Modificada | Alta (7.1) | 0.91% | — | Siemens Simatic CP 343-1 STD FirmwareSiemens Simatic CP 343-1 Lean FirmwareSiemens Simatic CP 343-1 ADV FirmwareSiemens Simatic CP 443-1 STD Firmware+75 | 11/5/2017 | 17/6/2026 | Specially crafted PROFINET DCP packets sent on a local Ethernet segment (Layer 2) to an affected product could cause a denial of service condition of that product. Human interaction is required to recover the system. PROFIBUS interfaces are not affected. | |
| Modificada | Alta (7.1) | 1.1% | — | Siemens Simatic CP 343-1 STD FirmwareSiemens Simatic CP 343-1 Lean FirmwareSiemens Simatic CP 343-1 ADV FirmwareSiemens Simatic CP 443-1 STD Firmware+89 | 11/5/2017 | 17/6/2026 | Specially crafted PROFINET DCP broadcast packets could cause a denial of service condition of affected products on a local Ethernet segment (Layer 2). Human interaction is required to recover the systems. PROFIBUS interfaces are not affected. |