Over 145,000 Industrial Control Systems from 175 Countries Discovered to be Vulnerable
November 22, 2024Multiple Adobe Substance3D Vulnerabilities
November 22, 2024Over 145,000 Industrial Control Systems from 175 Countries Discovered to be Vulnerable
November 22, 2024Multiple Adobe Substance3D Vulnerabilities
November 22, 2024Severity
High
Analysis Summary
CVE-2024-50572 CVSS:7.2
Siemens SCALANCE M-800 family could allow a remote authenticated attacker to execute arbitrary code on the system, caused by improper input validation. By sending a specially crafted request, an attacker could exploit this vulnerability to execute arbitrary code or spawn a system root shell.
CVE-2024-50557 CVSS:7.2
Siemens SCALANCE M-800 family could allow a remote authenticated attacker to execute arbitrary code on the system, caused by improper validation of configuration fields in the iperf function. By sending a specially crafted request, an attacker could exploit this vulnerability to execute arbitrary code on the system.
CVE-2024-50313 CVSS:6.9
Siemens Mendix Runtime could allow a remote attacker to bypass security restrictions, caused by a race condition vulnerability. By sending a specially crafted request, an attacker could exploit this vulnerability to circumvent default account lockout measures.
CVE-2024-50310 CVSS:8.7
Siemens SIMATIC CP 1543-1 could allow a remote attacker to obtain sensitive information, caused by an Incorrect Authorization vulnerability. By sending a specially crafted request, an attacker could exploit this vulnerability to gain access to the filesystem.
CVE-2024-47940 CVSS:7.8
Siemens Solid Edge could allow a remote attacker to execute arbitrary code on the system, caused by an out-of-bounds read. By persuading a victim to open a specially-crafted PSM file, an attacker could exploit this vulnerability to execute arbitrary code on the system.
CVE-2024-46890 CVSS:9.4
Siemens SINEC INS could allow a remote authenticated attacker to execute arbitrary commands on the system, caused by a flaw in web API. By sending a specially crafted request, an attacker could exploit this vulnerability to execute arbitrary commands on the system.
CVE-2024-46891 CVSS:6.9
Siemens SINEC INS is vulnerable to a denial of service, caused by failing to restrict the size of generated log files. By sending a specially crafted request, a remote attacker could exploit this vulnerability to exhaust the system's resources and create a denial of service condition.
CVE-2024-44102 CVSS:10
Siemens TeleControl Server Basic could allow a remote attacker to execute arbitrary code on the system, caused by a deserialization vulnerability. By sending a specially crafted request, an attacker could exploit this vulnerability to execute arbitrary code on the system.
CVE-2024-32736 CVSS:7
Siemens Engineering Platforms could allow a local authenticated attacker to execute arbitrary code on the system, caused by a deserialization flaw. By sending a specially crafted request, an attacker could exploit this vulnerability to execute arbitrary code on the system.
CVE-2024-47783 CVSS:8.5
Siemens SIPORT could allow a local authenticated attacker to gain elevated privileges on the system. By sending a specially crafted request, an attacker could exploit this vulnerability to override or modify the service executable and subsequently gain elevated privileges.
CVE-2024-47941 CVSS:7.8
Siemens Solid Edge could allow a remote attacker to execute arbitrary code on the system, caused by an out-of-bounds read. By persuading a victim to open a specially-crafted PAR file, an attacker could exploit this vulnerability to execute arbitrary code on the system.
Impact
- Denial of Service
- Gain Access
- Code Execution
- Security Bypass
- Privilege Escalation
- Information Disclosure
Indicators of Compromise
CVE
- CVE-2024-50572
- CVE-2024-50557
- CVE-2024-50313
- CVE-2024-50310
- CVE-2024-47940
- CVE-2024-46890
- CVE-2024-46891
- CVE-2024-44102
- CVE-2024-32736
- CVE-2024-47783
- CVE-2024-47941
Affected Vendors
Affected Products
- Siemens SCALANCE M804PB
- Siemens RUGGEDCOM RM1224 LTE(4G) EU
- Siemens RUGGEDCOM RM1224 LTE(4G) NAM
- Siemens SINEC INS
- Siemens SCALANCE M-800 family - 8.1
- Siemens Mendix Runtime - 8
- Siemens Mendix Runtime - 9
- Siemens Mendix Runtime - 10
- Siemens Mendix Runtime - 10.6
- Siemens SIMATIC CP 1543-1 - 4.0
- Siemens Solid Edge SE2024
- Siemens TeleControl Server Basic - 3.1
- Siemens SIMATIC S7-PLCSIM - 16
- Siemens SIMATIC S7-PLCSIM - 17
- Siemens SIPORT
Remediation
Refer to Siemens Security Advisory for patch, upgrade or suggested workaround information.