siemens simit-simulation-platform CVE-2022-25622 is a vulnerability in Siemens Simit Simulation Platform
Published on April 12, 2022

The PROFINET (PNIO) stack, when integrated with the Interniche IP stack, improperly handles internal resources for TCP segments where the minimum TCP-Header length is less than defined. This could allow an attacker to create a denial of service condition for TCP services on affected devices by sending specially crafted TCP segments.

NVD

Weakness Type

What is a Resource Exhaustion Vulnerability?

The software does not properly control the allocation and maintenance of a limited resource, thereby enabling an actor to influence the amount of resources consumed, eventually leading to the exhaustion of available resources.

CVE-2022-25622 has been classified to as a Resource Exhaustion vulnerability or weakness.


Products Associated with CVE-2022-25622

Want to know whenever a new CVE is published for Siemens Simit Simulation Platform? stack.watch will email you.

 

Affected Versions

Siemens SIMATIC CFU DIQ: Siemens SIMATIC CFU PA: Siemens SIMATIC ET 200AL IM 157-1 PN: Siemens SIMATIC ET 200MP IM 155-5 PN HF: Siemens SIMATIC ET 200pro IM 154-8 PN/DP CPU: Siemens SIMATIC ET 200pro IM 154-8F PN/DP CPU: Siemens SIMATIC ET 200pro IM 154-8FX PN/DP CPU: Siemens SIMATIC ET 200S IM 151-8 PN/DP CPU: Siemens SIMATIC ET 200S IM 151-8F PN/DP CPU: Siemens SIMATIC ET 200SP IM 155-6 MF HF: Siemens SIMATIC ET 200SP IM 155-6 PN HA (incl. SIPLUS variants): Siemens SIMATIC ET 200SP IM 155-6 PN HF: Siemens SIMATIC ET 200SP IM 155-6 PN/2 HF: Siemens SIMATIC ET 200SP IM 155-6 PN/3 HF: Siemens SIMATIC ET200ecoPN, AI 8xRTD/TC, M12-L: Siemens SIMATIC ET200ecoPN, CM 4x IO-Link, M12-L: Siemens SIMATIC ET200ecoPN, CM 8x IO-Link, M12-L: Siemens SIMATIC ET200ecoPN, CM 8x IO-Link, M12-L: Siemens SIMATIC ET200ecoPN, DI 16x24VDC, M12-L: Siemens SIMATIC ET200ecoPN, DI 8x24VDC, M12-L: Siemens SIMATIC ET200ecoPN, DIQ 16x24VDC/2A, M12-L: Siemens SIMATIC ET200ecoPN, DQ 8x24VDC/0,5A, M12-L: Siemens SIMATIC ET200ecoPN, DQ 8x24VDC/2A, M12-L: Siemens SIMATIC PN/MF Coupler: Siemens SIMATIC PN/PN Coupler: Siemens SIMATIC S7-1500 CPU family (incl. related ET200 CPUs and SIPLUS variants): Siemens SIMATIC S7-300 CPU 314C-2 PN/DP: Siemens SIMATIC S7-300 CPU 315-2 PN/DP: Siemens SIMATIC S7-300 CPU 315F-2 PN/DP: Siemens SIMATIC S7-300 CPU 315T-3 PN/DP: Siemens SIMATIC S7-300 CPU 317-2 PN/DP: Siemens SIMATIC S7-300 CPU 317F-2 PN/DP: Siemens SIMATIC S7-300 CPU 317T-3 PN/DP: Siemens SIMATIC S7-300 CPU 317TF-3 PN/DP: Siemens SIMATIC S7-300 CPU 319-3 PN/DP: Siemens SIMATIC S7-300 CPU 319F-3 PN/DP: Siemens SIMATIC S7-400 CPU 412-2 PN V7: Siemens SIMATIC S7-400 CPU 414-3 PN/DP V7: Siemens SIMATIC S7-400 CPU 414F-3 PN/DP V7: Siemens SIMATIC S7-400 CPU 416-3 PN/DP V7: Siemens SIMATIC S7-400 CPU 416F-3 PN/DP V7: Siemens SIMATIC S7-400 H V6 CPU family (incl. SIPLUS variants): Siemens SIMATIC S7-410 V10 CPU family (incl. SIPLUS variants): Siemens SIMATIC S7-410 V8 CPU family (incl. SIPLUS variants): Siemens SIMATIC TDC CP51M1: Siemens SIMATIC TDC CPU555: Siemens SIMATIC WinAC RTX 2010: Siemens SIMATIC WinAC RTX F 2010: Siemens SINAMICS DCM: Siemens SINAMICS G110M: Siemens SINAMICS G115D: Siemens SINAMICS G120 (incl. SIPLUS variants): Siemens SINAMICS G130: Siemens SINAMICS G150: Siemens SINAMICS S110: Siemens SINAMICS S120 (incl. SIPLUS variants): Siemens SINAMICS S150: Siemens SINAMICS S210 (6SL5...): Siemens SINAMICS V90: Siemens SIPLUS ET 200MP IM 155-5 PN HF: Siemens SIPLUS ET 200MP IM 155-5 PN HF: Siemens SIPLUS ET 200MP IM 155-5 PN HF T1 RAIL: Siemens SIPLUS ET 200S IM 151-8 PN/DP CPU: Siemens SIPLUS ET 200S IM 151-8F PN/DP CPU: Siemens SIPLUS ET 200SP IM 155-6 PN HF: Siemens SIPLUS ET 200SP IM 155-6 PN HF: Siemens SIPLUS ET 200SP IM 155-6 PN HF: Siemens SIPLUS ET 200SP IM 155-6 PN HF: Siemens SIPLUS ET 200SP IM 155-6 PN HF T1 RAIL: Siemens SIPLUS ET 200SP IM 155-6 PN HF T1 RAIL: Siemens SIPLUS ET 200SP IM 155-6 PN HF TX RAIL: Siemens SIPLUS HCS4200 CIM4210: Siemens SIPLUS HCS4200 CIM4210C: Siemens SIPLUS HCS4300 CIM4310: Siemens SIPLUS NET PN/PN Coupler: Siemens SIPLUS S7-300 CPU 314C-2 PN/DP: Siemens SIPLUS S7-300 CPU 315-2 PN/DP: Siemens SIPLUS S7-300 CPU 315F-2 PN/DP: Siemens SIPLUS S7-300 CPU 317-2 PN/DP: Siemens SIPLUS S7-300 CPU 317F-2 PN/DP: Siemens SIPLUS S7-400 CPU 414-3 PN/DP V7: Siemens SIPLUS S7-400 CPU 416-3 PN/DP V7:

Exploit Probability

EPSS
0.12%
Percentile
30.48%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.