You are viewing this page in an unauthorized frame window.
This is a potential security issue, you are being redirected to
https://nvd.nist.gov
An official website of the United States government
Official websites use .gov
A .gov website belongs to an official government organization in the United States.
Secure .gov websites use HTTPS
A lock () or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.
A vulnerability has been identified in SIMATIC HMI Comfort Outdoor Panels V15 7\" & 15\" (incl. SIPLUS variants) (All versions < V15.1 Update 6), SIMATIC HMI Comfort Outdoor Panels V16 7\" & 15\" (incl. SIPLUS variants) (All versions < V16 Update 4), SIMATIC HMI Comfort Panels V15 4\" - 22\" (incl. SIPLUS variants) (All versions < V15.1 Update 6), SIMATIC HMI Comfort Panels V16 4\" - 22\" (incl. SIPLUS variants) (All versions < V16 Update 4), SIMATIC HMI KTP Mobile Panels V15 KTP400F, KTP700, KTP700F, KTP900 and KTP900F (All versions < V15.1 Update 6), SIMATIC HMI KTP Mobile Panels V16 KTP400F, KTP700, KTP700F, KTP900 and KTP900F (All versions < V16 Update 4), SIMATIC WinCC Runtime Advanced V15 (All versions < V15.1 Update 6), SIMATIC WinCC Runtime Advanced V16 (All versions < V16 Update 4). SmartVNC has an out-of-bounds memory access vulnerability that could be triggered on the client side when sending data from the server, which could result in a Denial-of-Service condition.
Metrics
NVD enrichment efforts reference publicly available information to associate
vector strings. CVSS information contributed by other sources is also
displayed.
By selecting these links, you will be leaving NIST webspace.
We have provided these links to other web sites because they
may have information that would be of interest to you. No
inferences should be drawn on account of other sites being
referenced, or not, from this page. There may be other web
sites that are more appropriate for your purpose. NIST does
not necessarily endorse the views expressed, or concur with
the facts presented on these sites. Further, NIST does not
endorse any commercial products that may be mentioned on
these sites. Please address comments about this page to nvd@nist.gov.
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_15\"_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 15.1
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_15\"_firmware:15.1:-:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_15\"_firmware:15.1:update1:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_15\"_firmware:15.1:update2:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_pa
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_15\"_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_15\"_firmware:16:*:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_15\"_firmware:16:-:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_15\"_firmware:16:update1:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_15\"_firm
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_7\"_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 15.1
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_7\"_firmware:15.1:-:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_7\"_firmware:15.1:update1:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_7\"_firmware:15.1:update2:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_7\"_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_7\"_firmware:16:-:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_7\"_firmware:16:update1:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_7\"_firmware:16:update2:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_7\"_fir
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_22\"_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 15.1
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_22\"_firmware:15.1:-:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_22\"_firmware:15.1:update1:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_22\"_firmware:15.1:update2:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_22\"_firmware:15.1:update3:*:*:*:*:
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_22\"_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_22\"_firmware:16:-:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_22\"_firmware:16:update1:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_22\"_firmware:16:update2:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_22\"_firmware:16:update3:*:*:*:*:*:*
O
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_4\"_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 15.1
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_4\"_firmware:15.1:-:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_4\"_firmware:15.1:update1:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_4\"_firmware:15.1:update2:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_4\"_firmware:15.1:update3:*:*:*:*:*:*
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_4\"_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_4\"_firmware:16:-:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_4\"_firmware:16:update1:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_4\"_firmware:16:update2:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_4\"_firmware:16:update3:*:*:*:*:*:*
OR
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp400f_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 15.1
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp400f_firmware:15.1:-:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp400f_firmware:15.1:update1:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp400f_firmware:15.1:update2:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp400f_
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp400f_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp400f_firmware:16:-:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp400f_firmware:16:update1:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp400f_firmware:16:update2:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp400f_firmware
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 15.1
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700_firmware:15.1:-:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700_firmware:15.1:update1:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700_firmware:15.1:update2:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700_firmw
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700_firmware:16:-:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700_firmware:16:update1:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700_firmware:16:update2:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700_firmware:16:u
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700f_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 15.1
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700f_firmware:15.1:-:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700f_firmware:15.1:update1:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700f_firmware:15.1:update2:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700f_
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700f_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700f_firmware:16:-:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700f_firmware:16:update1:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700f_firmware:16:update2:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700f_firmware
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 15.1
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900_firmware:15.1:-:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900_firmware:15.1:update1:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900_firmware:15.1:update2:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900_firmw
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900_firmware:16:-:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900_firmware:16:update1:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900_firmware:16:update2:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900_firmware:16:u
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900f_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 15.1
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900f_firmware:15.1:-:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900f_firmware:15.1:update1:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900f_firmware:15.1:update2:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900f_
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900f_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900f_firmware:16:-:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900f_firmware:16:update1:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900f_firmware:16:update2:*:*:*:*:*:*
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900f_firmware
OR
*cpe:2.3:a:siemens:simatic_wincc_runtime_advanced:*:*:*:*:*:*:*:* versions up to (excluding) 15.1
*cpe:2.3:a:siemens:simatic_wincc_runtime_advanced:15.1:-:*:*:*:*:*:*
*cpe:2.3:a:siemens:simatic_wincc_runtime_advanced:15.1:update1:*:*:*:*:*:*
*cpe:2.3:a:siemens:simatic_wincc_runtime_advanced:15.1:update2:*:*:*:*:*:*
*cpe:2.3:a:siemens:simatic_wincc_runtime_advanced:15.1:update3:*:*:*:*:*:*
*cpe:2.3:a:siemens:simatic_wincc_runtime_advanced:15.1:update4:*:*:*:*:*:*
Removed
CPE Configuration
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_15\"_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_15\"_firmware:16:-:*:*:*:*:*:*
OR
cpe:2.3:h:siemens:simatic_hmi_comfort_outdoor_panels_15\":-:*:*:*:*:*:*:*
Removed
CPE Configuration
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_7\"_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_7\"_firmware:16:-:*:*:*:*:*:*
OR
cpe:2.3:h:siemens:simatic_hmi_comfort_outdoor_panels_7\":-:*:*:*:*:*:*:*
Removed
CPE Configuration
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_22\"_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_22\"_firmware:16:-:*:*:*:*:*:*
OR
cpe:2.3:h:siemens:simatic_hmi_comfort_panels_22\":-:*:*:*:*:*:*:*
Removed
CPE Configuration
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_4\"_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_4\"_firmware:16:-:*:*:*:*:*:*
OR
cpe:2.3:h:siemens:simatic_hmi_comfort_panels_4\":-:*:*:*:*:*:*:*
Removed
CPE Configuration
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp400f_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp400f_firmware:16:-:*:*:*:*:*:*
OR
cpe:2.3:h:siemens:simatic_hmi_ktp_mobile_panels_ktp400f:-:*:*:*:*:*:*:*
Removed
CPE Configuration
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700_firmware:16:-:*:*:*:*:*:*
OR
cpe:2.3:h:siemens:simatic_hmi_ktp_mobile_panels_ktp700:-:*:*:*:*:*:*:*
Removed
CPE Configuration
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700f_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700f_firmware:16:-:*:*:*:*:*:*
OR
cpe:2.3:h:siemens:simatic_hmi_ktp_mobile_panels_ktp700f:-:*:*:*:*:*:*:*
Removed
CPE Configuration
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900_firmware:16:-:*:*:*:*:*:*
OR
cpe:2.3:h:siemens:simatic_hmi_ktp_mobile_panels_ktp900:-:*:*:*:*:*:*:*
Removed
CPE Configuration
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900f_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900f_firmware:16:-:*:*:*:*:*:*
OR
cpe:2.3:h:siemens:simatic_hmi_ktp_mobile_panels_ktp900f:-:*:*:*:*:*:*:*
SmartVNC has an out-of-bounds memory access vulnerability that could be triggered on the client side when sending data from the server, which could result in a denial-of-service condition on the SIMATIC HMIs/WinCC Products SIMATIC HMI Comfort Outdoor Panels 7’ and 15’ (incl. SIPLUS variants), SIMATIC HMI Comfort Panels 4’to 22’ (incl. SIPLUS variants), SIMATIC HMI KTP Mobile Panels KTP400F, KTP700, KTP700F, KTP900, and KTP900F, SIMATIC WinCC Runtime Advanced (All versions prior to v16 Update 4).
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_15\"_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_15\"_firmware:16:-:*:*:*:*:*:*
OR
cpe:2.3:h:siemens:simatic_hmi_comfort_outdoor_panels_15\":-:*:*:*:*:*:*:*
Added
CPE Configuration
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_7\"_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_7\"_firmware:16:-:*:*:*:*:*:*
OR
cpe:2.3:h:siemens:simatic_hmi_comfort_outdoor_panels_7\":-:*:*:*:*:*:*:*
Added
CPE Configuration
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_22\"_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_22\"_firmware:16:-:*:*:*:*:*:*
OR
cpe:2.3:h:siemens:simatic_hmi_comfort_panels_22\":-:*:*:*:*:*:*:*
Added
CPE Configuration
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_4\"_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_comfort_panels_4\"_firmware:16:-:*:*:*:*:*:*
OR
cpe:2.3:h:siemens:simatic_hmi_comfort_panels_4\":-:*:*:*:*:*:*:*
Added
CPE Configuration
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp400f_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp400f_firmware:16:-:*:*:*:*:*:*
OR
cpe:2.3:h:siemens:simatic_hmi_ktp_mobile_panels_ktp400f:-:*:*:*:*:*:*:*
Added
CPE Configuration
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700_firmware:16:-:*:*:*:*:*:*
OR
cpe:2.3:h:siemens:simatic_hmi_ktp_mobile_panels_ktp700:-:*:*:*:*:*:*:*
Added
CPE Configuration
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700f_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700f_firmware:16:-:*:*:*:*:*:*
OR
cpe:2.3:h:siemens:simatic_hmi_ktp_mobile_panels_ktp700f:-:*:*:*:*:*:*:*
Added
CPE Configuration
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900_firmware:16:-:*:*:*:*:*:*
OR
cpe:2.3:h:siemens:simatic_hmi_ktp_mobile_panels_ktp900:-:*:*:*:*:*:*:*
Added
CPE Configuration
AND
OR
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900f_firmware:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900f_firmware:16:-:*:*:*:*:*:*
OR
cpe:2.3:h:siemens:simatic_hmi_ktp_mobile_panels_ktp900f:-:*:*:*:*:*:*:*
Added
CPE Configuration
OR
*cpe:2.3:a:siemens:simatic_wincc_runtime_advanced:*:*:*:*:*:*:*:* versions up to (excluding) 16
*cpe:2.3:a:siemens:simatic_wincc_runtime_advanced:16:-:*:*:*:*:*:*
*cpe:2.3:a:siemens:simatic_wincc_runtime_advanced:16:update1:*:*:*:*:*:*
*cpe:2.3:a:siemens:simatic_wincc_runtime_advanced:16:update2:*:*:*:*:*:*
*cpe:2.3:a:siemens:simatic_wincc_runtime_advanced:16:update3:*:*:*:*:*:*
Added
CVSS V2
NIST (AV:N/AC:L/Au:N/C:N/I:N/A:P)
Added
CVSS V3.1
NIST AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Changed
Reference Type
https://cert-portal.siemens.com/productcert/pdf/ssa-538778.pdf No Types Assigned
SmartVNC has an out-of-bounds memory access vulnerability that could be triggered on the client side when sending data from the server, which could result in a denial-of-service condition on the SIMATIC HMIs/WinCC Products SIMATIC HMI Comfort Outdoor Panels 7’ and 15’ (incl. SIPLUS variants), SIMATIC HMI Comfort Panels 4’to 22’ (incl. SIPLUS variants), SIMATIC HMI KTP Mobile Panels KTP400F, KTP700, KTP700F, KTP900, and KTP900F, SIMATIC WinCC Runtime Advanced (All versions prior to v16 Update 4).