Support Us — Your donation helps us keep running

Goal: 1000 CNY,Raised: 1000 CNY

100.0%
Get alerts for future matching vulnerabilitiesLog in to subscribe
I. Basic Information for CVE-2019-18336
Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
A vulnerability has been identified in SIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants) (All versions < V3.X.17), SIMATIC TDC CP51M1 (All versions < V1.1.8), SIMATIC TDC CPU555 (All versions < V1.1.1), SINUMERIK 840D sl (All versions < V4.8.6), SINUMERIK 840D sl (All versions < V4.94). Specially crafted packets sent to port 102/tcp (Profinet) could cause the affected device to go into defect mode. A restart is required in order to recover the system. Successful exploitation requires an attacker to have network access to port 102/tcp, with no authentication. No user interation is required. At the time of advisory publication no public exploitation of this security vulnerability was known.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
未加控制的资源消耗(资源穷尽)
Source: NVD (National Vulnerability Database)
Vulnerability Title
多款Siemens产品资源管理错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Siemens SIMATIC S7-300 CPUs等都是德国西门子(Siemens)公司的产品。SIMATIC S7-300 CPUs是一款CPU(中央处理器)模块。SINUMERIK 840D sl是一套高级机床数控系统。SIMATIC TDC CP51M1是一款SIMATIC TDC自动化系统的工业以太网通信模块。 多款Siemens产品中存在资源管理错误漏洞。该漏洞源于网络系统或产品对系统资源(如内存、磁盘空间、文件等)的管理不当。以下产品及版本受到影响:使用3.3.17之前版本固件的Sieme
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)
Affected Products
VendorProductAffected VersionsCPESubscribe
Siemens AGSIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants) All versions < V3.X.17 -
Siemens AGSIMATIC TDC CP51M1 All versions < V1.1.8 -
Siemens AGSIMATIC TDC CPU555 All versions < V1.1.1 -
Siemens AGSINUMERIK 840D sl All versions < V4.8.6 -
Siemens AGSINUMERIK 840D sl All versions < V4.94 -
II. Public POCs for CVE-2019-18336
#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC
III. Intelligence Information for CVE-2019-18336
Please Login to view more intelligence information
New Vulnerabilities
V. Comments for CVE-2019-18336

No comments yet


Leave a comment