Home/Product/siemens simatic s7 1500 cpu 1511 1 pn firmware
Product

siemens simatic s7 1500 cpu 1511 1 pn firmware

10 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2023-46156
< 3.1.0
Affected devices improperly handle specially crafted packets sent to port 102/tcp. This could allow an attacker to create a denia
7.5HIGH
CVE-2023-28831
< 21.9.7
The OPC UA implementations (ANSI C and C++) in affected products contain an integer overflow vulnerability that could cause the ap
7.5HIGH
CVE-2022-38773
all versions
Affected devices do not contain an Immutable Root of Trust in Hardware. With this the integrity of the code executed on the device
4.6MEDIUM
CVE-2021-44695
< 3.0.1
Affected devices don't process correctly certain special crafted packets sent to port 102/tcp, which could allow an attacker to ca
4.9MEDIUM
CVE-2021-44694
< 3.0.1
Affected devices don't process correctly certain special crafted packets sent to port 102/tcp, which could allow an attacker to ca
5.5MEDIUM
CVE-2021-44693
< 3.0.1
Affected devices don't process correctly certain special crafted packets sent to port 102/tcp, which could allow an attacker to ca
4.9MEDIUM
CVE-2021-40365
< 3.0.1
Affected devices don't process correctly certain special crafted packets sent to port 102/tcp, which could allow an attacker to ca
7.5HIGH
CVE-2022-30694
all versions
The login endpoint /FormLogin in affected web services does not apply proper origin checking. This could allow authenticated re
6.5MEDIUM
CVE-2019-19300
< 2.0
A vulnerability has been identified in Development/Evaluation Kits for PROFINET IO: EK-ERTEC 200, Development/Evaluation Kits for
7.5HIGH
CVE-2019-19281
>= 2.5 and < 2.8
A vulnerability has been identified in SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) (All versions >= V2
7.5HIGH
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin