CVE-2018-13814 vulnerability in Siemens Products
Published on December 13, 2018
A vulnerability has been identified in SIMATIC HMI Comfort Panels 4" - 22" (All versions < V14), SIMATIC HMI Comfort Outdoor Panels 7" & 15" (All versions < V14), SIMATIC HMI KTP Mobile Panels KTP400F, KTP700, KTP700F, KTP900 and KTP900F (All versions < V14), SIMATIC WinCC Runtime Advanced (All versions < V14), SIMATIC WinCC Runtime Professional (All versions < V14), SIMATIC WinCC (TIA Portal) (All versions < V14), SIMATIC HMI Classic Devices (TP/MP/OP/MP Mobile Panel) (All versions). The integrated web server (port 80/tcp and port 443/tcp) of the affected devices could allow an attacker to inject HTTP headers. An attacker must trick a valid user who is authenticated to the device into clicking on a malicious link to exploit the vulnerability. At the time of advisory publication no public exploitation of this security vulnerability was known.
Weakness Type
What is a HTTP Response Splitting Vulnerability?
The software receives data from an upstream component, but does not neutralize or incorrectly neutralizes CR and LF characters before the data is included in outgoing HTTP headers.
CVE-2018-13814 has been classified to as a HTTP Response Splitting vulnerability or weakness.
Products Associated with CVE-2018-13814
You can be notified by email with stack.watch whenever vulnerabilities like CVE-2018-13814 are published in these products:
Affected Versions
Siemens AG SIMATIC HMI Comfort Panels 4" - 22", SIMATIC HMI Comfort Outdoor Panels 7" & 15", SIMATIC HMI KTP Mobile Panels KTP400F, KTP700, KTP700F, KTP900 und KTP900F, SIMATIC WinCC Runtime Advanced, SIMATIC WinCC Runtime Professional, SIMATIC WinCC (TIA Portal), SIMATIC HMI Classic Devices (TP/MP/OP/MP Mobile Panel):- Version SIMATIC HMI Comfort Panels 4" - 22" : All versions < V14 is affected.
- Version SIMATIC HMI Comfort Outdoor Panels 7" & 15" : All versions < V14 is affected.
- Version SIMATIC HMI KTP Mobile Panels KTP400F, KTP700, KTP700F, KTP900 und KTP900F : All versions < V14 is affected.
- Version SIMATIC WinCC Runtime Advanced : All versions < V14 is affected.
- Version SIMATIC WinCC Runtime Professional : All versions < V14 is affected.
- Version SIMATIC WinCC (TIA Portal) : All versions < V14 is affected.
- Version SIMATIC HMI Classic Devices (TP/MP/OP/MP Mobile Panel) : All versions is affected.
Exploit Probability
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.