VDB
SSA-211752
SSA-211752
PUBLISHED
CVSS 9.800000190734863 CRITICAL
All versions of the SIMATIC CP 443-1 OPC UA contain multiple vulnerabilities in the underlying third party component NTP. Siemens recommends specific countermeasures for products where updates are not, or not yet available.
Risk Scores
CVSS 3.1
9.800000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| SIMATIC CP 443-1 OPC UA (6GK7443-1UX00-0XE0) |
Exploit Intelligence
- Trinadh465/linux-4.1.15_CVE-2017-1000371 (github-poc)
- CVE-2017-1000367 (github-poc)
- own implementation of the CVE-2017-1000367 sudo privilege escalation vulnerability in python (github-poc)
- homjxi0e/CVE-2017-1000367 (github-poc)
- c0d3z3r0/sudo-CVE-2017-1000367 (github-poc)
- https://cert-portal.siemens.com/productcert/pdf/ssa-211752.pdf (circl)
- https://cert-portal.siemens.com/productcert/txt/ssa-211752.txt (circl)
- https://cert-portal.siemens.com/productcert/csaf/ssa-211752.json (circl)
Timeline
- CVE Published