Vulnerability Change Records for CVE-2018-16556

Change History

CVE Modified by Siemens AG 12/13/2018 12:29:00 PM

Action Type Old Value New Value
Added Reference

								
							
							
						
https://ics-cert.us-cert.gov/advisories/ICSA-18-317-02 [No Types Assigned]

CVE Modified by Siemens AG 10/09/2019 7:36:14 PM

Action Type Old Value New Value
Added CWE

								
							
							
						
Siemens AG CWE-730

Initial Analysis 2/14/2019 10:46:16 AM

Action Type Old Value New Value
Added CPE Configuration

								
							
							
						
AND
     OR
          *cpe:2.3:o:siemens:simatic_s7-400_firmware:*:*:*:*:*:*:*:* versions up to (including) v6.0
     OR
          cpe:2.3:h:siemens:simatic_s7-400:-:*:*:*:*:*:*:*
Added CPE Configuration

								
							
							
						
AND
     OR
          *cpe:2.3:o:siemens:simatic_s7-400_pn\/dp_v7_firmware:*:*:*:*:*:*:*:*
     OR
          cpe:2.3:h:siemens:simatic_s7-400_pn\/dp_v7:-:*:*:*:*:*:*:*
Added CPE Configuration

								
							
							
						
AND
     OR
          *cpe:2.3:o:siemens:simatic_s7-400h_firmware:*:*:*:*:*:*:*:* versions up to (including) v4.5
     OR
          cpe:2.3:h:siemens:simatic_s7-400h:-:*:*:*:*:*:*:*
Added CPE Configuration

								
							
							
						
AND
     OR
          *cpe:2.3:o:siemens:simatic_s7-400h_v6_firmware:*:*:*:*:*:*:*:*
     OR
          cpe:2.3:h:siemens:simatic_s7-400h_v6:-:*:*:*:*:*:*:*
Added CPE Configuration

								
							
							
						
AND
     OR
          *cpe:2.3:o:siemens:simatic_s7-410_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 8.2.1
     OR
          cpe:2.3:h:siemens:simatic_s7-410:-:*:*:*:*:*:*:*
Added CVSS V2

								
							
							
						
(AV:N/AC:L/Au:N/C:N/I:N/A:C)
Added CVSS V3

								
							
							
						
AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Added CWE

								
							
							
						
CWE-20
Changed Reference Type
https://cert-portal.siemens.com/productcert/pdf/ssa-113131.pdf No Types Assigned
https://cert-portal.siemens.com/productcert/pdf/ssa-113131.pdf Vendor Advisory
Changed Reference Type
https://ics-cert.us-cert.gov/advisories/ICSA-18-317-02 No Types Assigned
https://ics-cert.us-cert.gov/advisories/ICSA-18-317-02 Third Party Advisory, US Government Resource