Description
The debugging feature on the Siemens CP 1604 and CP 1616 interface cards with firmware before 2.5.2 allows remote attackers to execute arbitrary code via a crafted packet to UDP port 17185.
References (2)
Core 2
Core References
Vendor Advisory x_refsource_confirm
http://www.siemens.com/corporate-technology/pool/de/forschungsfelder/siemens_security_advisory_ssa-628113.pdf
US Government Resource x_refsource_misc
http://ics-cert.us-cert.gov/pdf/ICSA-13-084-01.pdf
Scores
EPSS
0.0210
EPSS Percentile
84.3%
Details
Status
published
Products (4)
siemens/cp_1604
siemens/cp_1604_firmware
< 2.5.1
siemens/cp_1616
siemens/cp_1616_firmware
< 2.5.1
Published
Apr 01, 2013
Tracked Since
Feb 18, 2026