VendorsSiemenssimatic_s7-1500_cpu_1512sp-1_pn_firmwareall versions
Vulnerabilities

Siemens SIMATIC S7-1500 CPU 1512SP-1 PN

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2023-28831
The OPC UA implementations (ANSI C and C++) in affected products contain an integer overflow vulnerability that could cause the application to run into an infinite loop during certificate validation. This could allow an unauthenticated remote attacker to create a denial of service condition by sending a specially crafted certificate.
Published 2023-09-12 · Modified
8.7EPSS 0.011
CVE-2023-46156
Affected devices improperly handle specially crafted packets sent to port 102/tcp. This could allow an attacker to create a denial of service condition. A restart is needed to restore normal operations.
Published 2023-12-12 · Modified
7.5EPSS 0.012
CVE-2022-38773
Affected devices do not contain an Immutable Root of Trust in Hardware. With this the integrity of the code executed on the device can not be validated during load-time. An attacker with physical access to the device could use this to replace the boot image of the device and execute arbitrary code.
Published 2023-01-10 · Modified
6.8EPSS 0.003