A vulnerability has been identified in SIMATIC CP 1604 (All versions), SIMATIC CP 1616 (All versions), SIMATIC CP 1623 (All versions), SIMATIC CP 1626 (All versions), SIMATIC CP 1628 (All versions). The kernel memory of affected devices is exposed to user-mode via direct memory access (DMA) which could allow a local attacker with administrative privileges to execute arbitrary code on the host system without any restrictions.
History

Thu, 19 Sep 2024 15:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: siemens

Published: 2023-10-10T10:21:22.914Z

Updated: 2024-09-19T14:27:20.089Z

Reserved: 2023-06-28T13:43:44.254Z

Link: CVE-2023-37194

cve-icon Vulnrichment

Updated: 2024-08-02T17:09:34.104Z

cve-icon NVD

Status : Analyzed

Published: 2023-10-10T11:15:11.903

Modified: 2023-10-16T18:28:22.733

Link: CVE-2023-37194

cve-icon Redhat

No data.