HIGH🇵🇱 Wersja polska

CVE-2019-10937

CVSS 7.5v3.1pub. 2019-09-13upd. 2024-11-21

A vulnerability has been identified in SIMATIC TDC CP51M1 (All versions < V1.1.7). An attacker with network access to the device could cause a Denial-of-Service condition by sending a specially crafted UDP packet. The vulnerability affects the UDP communication of the device. The security vulnerability could be exploited without authentication. No user interaction is required to exploit this security vulnerability. Successful exploitation of the security vulnerability compromises availability of the targeted system. At the time of advisory publication no public exploitation of this security vulnerability was known.

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
  • Siemens Simatic Tdc Cp51m1

    HW
    Siemens
    all versions
  • Siemens Simatic Tdc Cp51m1 Firmware

    OS
    Siemens
    < 1.1.7
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
References

Related vulnerabilities

CVE-2019-19300HIGH7.5same product

A vulnerability has been identified in Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200, Development/...

CVE-2019-18336HIGH7.5same product

A vulnerability has been identified in SIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants...

CVE-2022-25622MEDIUM5.3same product

The PROFINET (PNIO) stack, when integrated with the Interniche IP stack, improperly handles internal resources...

CVE-2026-0300CRITICAL9.3⚠ KEVPL ✓same vendor

Buffer overflow RCE z uprawnieniami root w PAN-OS Captive Portal

CVE-2026-24858CRITICAL9.8⚠ KEVPL ✓same vendor

Fortinet – Auth Bypass przez FortiCloud SSO w wielu produktach