Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2018-4858

Quick assessment

Affected
Siemens AG IEC 61850 system configurator, DIGSI 5 (affected as IEC 61850 system configurator is incorporated), DIGSI 4, SICAM PAS/PQS, SICAM PQ Analyzer, SICAM SCC
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Siemens IEC 61850 system configurator等都是德国西门子(Siemens)公司的产品。Siemens IEC 61850 system configurator是一款用于智能变电站的系统配置器;DIGSI是一套用于Siemens保护和测控系统的统一配置软件。 多款Siemens产品中存在安全漏洞。攻击者可利用该漏洞窃取系统数据或以操作系统用户权限执行代码。以下产品和版本受到影响:Siemens IEC 61850系统配置器5.80之前版本;DIGSI 5 7.80之前版本

AI Predicted 5.3 Difficulty: Hard EPSS 1.82% · P78
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2018-4858

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: CVE Program / CVE List V5
Vulnerability Description
A vulnerability has been identified in IEC 61850 system configurator (All versions < V5.80), DIGSI 5 (affected as IEC 61850 system configurator is incorporated) (All versions < V7.80), DIGSI 4 (All versions < V4.93), SICAM PAS/PQS (All versions < V8.11), SICAM PQ Analyzer (All versions < V3.11), SICAM SCC (All versions < V9.02 HF3). A service of the affected products listening on all of the host's network interfaces on either port 4884/TCP, 5885/TCP, or port 5886/TCP could allow an attacker to either exfiltrate limited data from the system or to execute code with Microsoft Windows user permissions. Successful exploitation requires an attacker to be able to send a specially crafted network request to the vulnerable service and a user interacting with the service's client application on the host. In order to execute arbitrary code with Microsoft Windows user permissions, an attacker must be able to plant the code in advance on the host by other means. The vulnerability has limited impact to confidentiality and integrity of the affected system. At the time of advisory publication no public exploitation of this security vulnerability was known. Siemens confirms the security vulnerability and provides mitigations to resolve the security issue.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
访问控制不恰当
Source: CVE Program / CVE List V5
Vulnerability Title
多款Siemens产品安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Siemens IEC 61850 system configurator等都是德国西门子(Siemens)公司的产品。Siemens IEC 61850 system configurator是一款用于智能变电站的系统配置器;DIGSI是一套用于Siemens保护和测控系统的统一配置软件。 多款Siemens产品中存在安全漏洞。攻击者可利用该漏洞窃取系统数据或以操作系统用户权限执行代码。以下产品和版本受到影响:Siemens IEC 61850系统配置器5.80之前版本;DIGSI 5 7.80之前版本
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
Siemens AG IEC 61850 system configurator, DIGSI 5 (affected as IEC 61850 system configurator is incorporated), DIGSI 4, SICAM PAS/PQS, SICAM PQ Analyzer, SICAM SCC IEC 61850 system configurator : All versions < V5.80 -

II. Public POCs for CVE-2018-4858

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2018-4858

请登录查看更多情报信息。

Vendor Advisories for CVE-2018-4858 (2)

Other References for CVE-2018-4858 (1)

IV. Related Vulnerabilities

V. Comments for CVE-2018-4858

No comments yet


Leave a comment