siemens simatic-s7-1500-software-controller CVE-2017-2681 is a vulnerability in Siemens Simatic S7 1500 Software Controller
Published on May 11, 2017

Specially crafted PROFINET DCP packets sent on a local Ethernet segment (Layer 2) to an affected product could cause a denial of service condition of that product. Human interaction is required to recover the system. PROFIBUS interfaces are not affected.

NVD

Weakness Type

What is a Resource Exhaustion Vulnerability?

The software does not properly control the allocation and maintenance of a limited resource, thereby enabling an actor to influence the amount of resources consumed, eventually leading to the exhaustion of available resources.

CVE-2017-2681 has been classified to as a Resource Exhaustion vulnerability or weakness.


Products Associated with CVE-2017-2681

Want to know whenever a new CVE is published for Siemens Simatic S7 1500 Software Controller? stack.watch will email you.

 

Affected Versions

Siemens Development/Evaluation Kits for PROFINET IO: DK Standard Ethernet Controller: Siemens Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200: Siemens Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200P: Siemens IE/AS-i Link PN IO: Siemens IE/PB-Link (incl. SIPLUS NET variants): Siemens SCALANCE M-800 family (incl. S615, MUM-800 and RM1224): Siemens SCALANCE W-700 IEEE 802.11n family: Siemens SCALANCE X-200 family (incl. SIPLUS NET variants): Siemens SCALANCE X-200IRT family (incl. SIPLUS NET variants): Siemens SCALANCE X-300 family (incl. X408 and SIPLUS NET variants): Siemens SCALANCE X408 family: Siemens SCALANCE X414: Siemens SCALANCE XM-400 family: Siemens SCALANCE XR-500 family: Siemens SIMATIC CM 1542-1: Siemens SIMATIC CM 1542SP-1: Siemens SIMATIC CP 1243-1 (incl. SIPLUS variants): Siemens SIMATIC CP 1243-1 DNP3 (incl. SIPLUS variants): Siemens SIMATIC CP 1243-1 IEC (incl. SIPLUS variants): Siemens SIMATIC CP 1243-8 IRC: Siemens SIMATIC CP 1542SP-1 IRC (incl. SIPLUS variants): Siemens SIMATIC CP 1543-1 (incl. SIPLUS variants): Siemens SIMATIC CP 1543SP-1 (incl. SIPLUS variants): Siemens SIMATIC CP 1604: Siemens SIMATIC CP 1616: Siemens SIMATIC CP 343-1 (incl. SIPLUS variants): Siemens SIMATIC CP 343-1 Advanced (incl. SIPLUS variants): Siemens SIMATIC CP 343-1 Lean (incl. SIPLUS variants): Siemens SIMATIC CP 443-1 (incl. SIPLUS variants): Siemens SIMATIC CP 443-1 Advanced (incl. SIPLUS variants): Siemens SIMATIC CP 443-1 OPC UA: Siemens SIMATIC DK-16xx PN IO: Siemens SIMATIC ET 200AL IM 157-1 PN: Siemens SIMATIC ET 200M (incl. SIPLUS variants): Siemens SIMATIC ET 200MP IM 155-5 PN BA: Siemens SIMATIC ET 200MP IM 155-5 PN HF: Siemens SIMATIC ET 200MP IM 155-5 PN ST: Siemens SIMATIC ET 200pro IM 154-3 PN HF: Siemens SIMATIC ET 200pro IM 154-4 PN HF: Siemens SIMATIC ET 200SP IM 155-6 PN BA: Siemens SIMATIC ET 200SP IM 155-6 PN HF: Siemens SIMATIC ET 200SP IM 155-6 PN HS: Siemens SIMATIC ET 200SP IM 155-6 PN ST: Siemens SIMATIC ET 200SP IM 155-6 PN ST BA: Siemens SIMATIC ET200ecoPN, 16DI, DC24V, 8xM12: Siemens SIMATIC ET200ecoPN, 16DO DC24V/1,3A, 8xM12: Siemens SIMATIC ET200ecoPN, 4AO U/I 4xM12: Siemens SIMATIC ET200ecoPN, 8 DIO, DC24V/1,3A, 8xM12: Siemens SIMATIC ET200ecoPN, 8 DO, DC24V/2A, 8xM12: Siemens SIMATIC ET200ecoPN, 8AI RTD/TC 8xM12: Siemens SIMATIC ET200ecoPN, 8AI; 4 U/I; 4 RTD/TC 8xM12: Siemens SIMATIC ET200ecoPN, 8DI, DC24V, 4xM12: Siemens SIMATIC ET200ecoPN, 8DI, DC24V, 8xM12: Siemens SIMATIC ET200ecoPN, 8DO, DC24V/0,5A, 4xM12: Siemens SIMATIC ET200ecoPN, 8DO, DC24V/1,3A, 4xM12: Siemens SIMATIC ET200ecoPN, 8DO, DC24V/1,3A, 8xM12: Siemens SIMATIC ET200ecoPN: IO-Link Master: Siemens SIMATIC ET200S (incl. SIPLUS variants): Siemens SIMATIC HMI Comfort Panels, HMI Multi Panels, HMI Mobile Panels (incl. SIPLUS variants): Siemens SIMATIC MV420 SR-B: Siemens SIMATIC MV420 SR-B Body: Siemens SIMATIC MV420 SR-P: Siemens SIMATIC MV420 SR-P Body: Siemens SIMATIC MV440 HR: Siemens SIMATIC MV440 SR: Siemens SIMATIC MV440 UR: Siemens SIMATIC PN/PN Coupler (incl. SIPLUS NET variants): Siemens SIMATIC RF650R: Siemens SIMATIC RF680R: Siemens SIMATIC RF685R: Siemens SIMATIC S7-1200 CPU family (incl. SIPLUS variants): Siemens SIMATIC S7-1500 CPU family (incl. related ET200 CPUs and SIPLUS variants): Siemens SIMATIC S7-1500 Software Controller: Siemens SIMATIC S7-200 SMART: Siemens SIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants): Siemens SIMATIC S7-400 H V6 CPU family (incl. SIPLUS variants): Siemens SIMATIC S7-400 PN/DP V6 CPU family (incl. SIPLUS variants): Siemens SIMATIC S7-400 PN/DP V7 CPU family (incl. SIPLUS variants): Siemens SIMATIC S7-410 CPU family (incl. SIPLUS variants): Siemens SIMATIC TDC CP51M1: Siemens SIMATIC TDC CPU555: Siemens SIMATIC Teleservice Adapter IE Advanced: Siemens SIMATIC Teleservice Adapter IE Basic: Siemens SIMATIC Teleservice Adapter IE Standard: Siemens SIMATIC WinAC RTX 2010: Siemens SIMATIC WinAC RTX F 2010: Siemens SIMOCODE pro V PROFINET (incl. SIPLUS variants): Siemens SIMOTION: Siemens SINAMICS DCM w. PN: Siemens SINAMICS DCP w. PN: Siemens SINAMICS G110M w. PN: Siemens SINAMICS G120(C/P/D) w. PN (incl. SIPLUS variants): Siemens SINAMICS G130 V4.7 w. PN: Siemens SINAMICS G130 V4.8 w. PN: Siemens SINAMICS G150 V4.7 w. PN: Siemens SINAMICS G150 V4.8 w. PN: Siemens SINAMICS S110 w. PN: Siemens SINAMICS S120 prior to V4.7 w. PN (incl. SIPLUS variants): Siemens SINAMICS S120 V4.7 SP1 w. PN (incl. SIPLUS variants): Siemens SINAMICS S120 V4.7 w. PN (incl. SIPLUS variants): Siemens SINAMICS S120 V4.8 w. PN (incl. SIPLUS variants): Siemens SINAMICS S150 V4.7 w. PN: Siemens SINAMICS S150 V4.8 w. PN: Siemens SINAMICS V90 w. PN: Siemens SINUMERIK 828D V4.5 and prior: Siemens SINUMERIK 828D V4.7: Siemens SINUMERIK 840D sl V4.5 and prior: Siemens SINUMERIK 840D sl V4.7: Siemens SIPLUS ET 200MP IM 155-5 PN HF: Siemens SIPLUS ET 200MP IM 155-5 PN HF: Siemens SIPLUS ET 200MP IM 155-5 PN HF T1 RAIL: Siemens SIPLUS ET 200MP IM 155-5 PN ST: Siemens SIPLUS ET 200MP IM 155-5 PN ST TX RAIL: Siemens SIPLUS ET 200SP IM 155-6 PN HF: Siemens SIPLUS ET 200SP IM 155-6 PN HF: Siemens SIPLUS ET 200SP IM 155-6 PN HF T1 RAIL: Siemens SIPLUS ET 200SP IM 155-6 PN ST: Siemens SIPLUS ET 200SP IM 155-6 PN ST BA: Siemens SIPLUS ET 200SP IM 155-6 PN ST BA TX RAIL: Siemens SIPLUS ET 200SP IM 155-6 PN ST TX RAIL: Siemens SIRIUS ACT 3SU1 interface module PROFINET: Siemens SIRIUS Motor Starter M200D PROFINET: Siemens SIRIUS Soft Starter 3RW44 PN: Siemens SITOP PSU8600 PROFINET: Siemens SITOP UPS1600 PROFINET (incl. SIPLUS variants): Siemens Softnet PROFINET IO for PC-based Windows systems:

Exploit Probability

EPSS
0.44%
Percentile
62.96%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.