CVE-2022-43768

CVSS V2 None CVSS V3 None
Description
A vulnerability has been identified in SIMATIC CP 1242-7 V2 (All versions), SIMATIC CP 1243-1 (All versions), SIMATIC CP 1243-1 DNP3 (incl. SIPLUS variants) (All versions), SIMATIC CP 1243-1 IEC (incl. SIPLUS variants) (All versions), SIMATIC CP 1243-7 LTE EU (All versions), SIMATIC CP 1243-7 LTE US (All versions), SIMATIC CP 1243-8 IRC (All versions), SIMATIC CP 1542SP-1 (All versions), SIMATIC CP 1542SP-1 IRC (All versions), SIMATIC CP 1543SP-1 (All versions), SIMATIC CP 443-1 (All versions < V3.3), SIMATIC CP 443-1 (All versions < V3.3), SIMATIC CP 443-1 Advanced (All versions < V3.3), SIMATIC IPC DiagBase (All versions), SIMATIC IPC DiagMonitor (All versions), SIPLUS ET 200SP CP 1542SP-1 IRC TX RAIL (All versions), SIPLUS ET 200SP CP 1543SP-1 ISEC (All versions), SIPLUS ET 200SP CP 1543SP-1 ISEC TX RAIL (All versions), SIPLUS NET CP 1242-7 V2 (All versions), SIPLUS NET CP 443-1 (All versions < V3.3), SIPLUS NET CP 443-1 Advanced (All versions < V3.3), SIPLUS S7-1200 CP 1243-1 (All versions), SIPLUS S7-1200 CP 1243-1 RAIL (All versions), SIPLUS TIM 1531 IRC (All versions < V2.3.6), TIM 1531 IRC (All versions < V2.3.6). The webserver of the affected products contains a vulnerability that may lead to a denial of service condition. An attacker may cause a denial of service situation of the webserver of the affected product.
Overview
  • CVE ID
  • CVE-2022-43768
  • Assigner
  • productcert@siemens.com
  • Vulnerability Status
  • Analyzed
  • Published Version
  • 2023-04-11T10:15:17
  • Last Modified Date
  • 2023-04-19T20:01:05
CPE Configuration (Product)
CPE Vulnerable Operator Version Start Version End
AND
cpe:2.3:o:siemens:simatic_cp_1242-7_v2_firmware:*:*:*:*:*:*:*:* 1 OR
cpe:2.3:h:siemens:simatic_cp_1242-7_v2:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:siemens:simatic_cp_1243-1_firmware:*:*:*:*:*:*:*:* 1 OR
cpe:2.3:h:siemens:simatic_cp_1243-1:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:siemens:simatic_cp_1243-1_dnp3_firmware:*:*:*:*:*:*:*:* 1 OR
cpe:2.3:h:siemens:simatic_cp_1243-1_dnp3:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:siemens:simatic_cp_1243-1_iec_firmware:*:*:*:*:*:*:*:* 1 OR
cpe:2.3:h:siemens:simatic_cp_1243-1_iec:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:siemens:simatic_cp_1243-7_lte_eu_firmware:*:*:*:*:*:*:*:* 1 OR
cpe:2.3:h:siemens:simatic_cp_1243-7_lte_eu:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:siemens:simatic_cp_1243-7_lte_us_firmware:*:*:*:*:*:*:*:* 1 OR
cpe:2.3:h:siemens:simatic_cp_1243-7_lte_us:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:siemens:simatic_cp_1243-8_irc_firmware:*:*:*:*:*:*:*:* 1 OR
cpe:2.3:h:siemens:simatic_cp_1243-8_irc:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:siemens:simatic_cp_1542sp-1_firmware:*:*:*:*:*:*:*:* 1 OR
cpe:2.3:h:siemens:simatic_cp_1542sp-1:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:siemens:simatic_cp_1542sp-1_irc_firmware:*:*:*:*:*:*:*:* 1 OR
cpe:2.3:h:siemens:simatic_cp_1542sp-1_irc:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:siemens:simatic_cp_1543sp-1_firmware:*:*:*:*:*:*:*:* 1 OR
cpe:2.3:h:siemens:simatic_cp_1543sp-1:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:siemens:simatic_cp_443-1_firmware:*:*:*:*:*:*:*:* 1 OR 3.3
cpe:2.3:h:siemens:simatic_cp_443-1:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:siemens:simatic_cp_443-1_advanced_firmware:*:*:*:*:*:*:*:* 1 OR 3.3
cpe:2.3:h:siemens:simatic_cp_443-1_advanced:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:siemens:simatic_ipc_diagbase_firmware:*:*:*:*:*:*:*:* 1 OR
cpe:2.3:h:siemens:simatic_ipc_diagbase:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:siemens:simatic_ipc_diagmonitor_firmware:*:*:*:*:*:*:*:* 1 OR
cpe:2.3:h:siemens:simatic_ipc_diagmonitor:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:siemens:siplus_et_200sp_cp_1542sp-1_irc_tx_rail_firmware:*:*:*:*:*:*:*:* 1 OR
cpe:2.3:h:siemens:siplus_et_200sp_cp_1542sp-1_irc_tx_rail:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:siemens:siplus_et_200sp_cp_1543sp-1_isec_firmware:*:*:*:*:*:*:*:* 1 OR
cpe:2.3:h:siemens:siplus_et_200sp_cp_1543sp-1_isec:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:siemens:siplus_et_200sp_cp_1543sp-1_isec_tx_rail_firmware:*:*:*:*:*:*:*:* 1 OR
cpe:2.3:h:siemens:siplus_et_200sp_cp_1543sp-1_isec_tx_rail:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:siemens:siplus_net_cp_1242-7_v2_firmware:*:*:*:*:*:*:*:* 1 OR
cpe:2.3:h:siemens:siplus_net_cp_1242-7_v2:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:siemens:siplus_net_cp_443-1_firmware:*:*:*:*:*:*:*:* 1 OR 3.3
cpe:2.3:h:siemens:siplus_net_cp_443-1:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:siemens:siplus_net_cp_443-1_advanced_firmware:*:*:*:*:*:*:*:* 1 OR 3.3
cpe:2.3:h:siemens:siplus_net_cp_443-1_advanced:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:siemens:siplus_s7-1200_cp_1243-1_firmware:*:*:*:*:*:*:*:* 1 OR
cpe:2.3:h:siemens:siplus_s7-1200_cp_1243-1:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:siemens:siplus_s7-1200_cp_1243-1_rail_firmware:*:*:*:*:*:*:*:* 1 OR
cpe:2.3:h:siemens:siplus_s7-1200_cp_1243-1_rail:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:siemens:siplus_tim_1531_irc_firmware:*:*:*:*:*:*:*:* 1 OR 2.3.6
cpe:2.3:h:siemens:siplus_tim_1531_irc:-:*:*:*:*:*:*:* 0 OR
AND
cpe:2.3:o:siemens:tim_1531_irc_firmware:*:*:*:*:*:*:*:* 1 OR 2.3.6
cpe:2.3:h:siemens:tim_1531_irc:-:*:*:*:*:*:*:* 0 OR
References
History
Created Old Value New Value Data Type Notes
2023-04-17 04:29:32 Added to TrackCVE
2023-04-17 04:29:34 Weakness Enumeration new
2023-04-18 12:00:14 Awaiting Analysis Undergoing Analysis Vulnerability Status updated
2023-04-19 21:00:51 2023-04-19T20:01:05 CVE Modified Date updated
2023-04-19 21:00:51 Undergoing Analysis Analyzed Vulnerability Status updated
2023-04-19 21:00:56 CPE Information updated