Description
A vulnerability was discovered in Siemens SIMATIC WinCC (V7.3 before Upd 11 and V7.4 before SP1), SIMATIC WinCC Runtime Professional (V13 before SP2 and V14 before SP1), SIMATIC WinCC (TIA Portal) Professional (V13 before SP2 and V14 before SP1) that could allow an authenticated, remote attacker who is member of the "administrators" group to crash services by sending specially crafted messages to the DCOM interface.
Published: 2017-05-11
Score: 4.9 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2017-15921 A vulnerability was discovered in Siemens SIMATIC WinCC (V7.3 before Upd 11 and V7.4 before SP1), SIMATIC WinCC Runtime Professional (V13 before SP2 and V14 before SP1), SIMATIC WinCC (TIA Portal) Professional (V13 before SP2 and V14 before SP1) that could allow an authenticated, remote attacker who is member of the "administrators" group to crash services by sending specially crafted messages to the DCOM interface.
History

No history.

Subscriptions

Siemens Simatic Wincc Simatic Wincc \(tia Portal\) Simatic Wincc Runtime
cve-icon MITRE

Status: PUBLISHED

Assigner: siemens

Published:

Updated: 2024-08-05T15:41:17.675Z

Reserved: 2017-03-13T00:00:00.000Z

Link: CVE-2017-6867

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2017-05-11T10:29:00.260

Modified: 2025-04-20T01:37:25.860

Link: CVE-2017-6867

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses