CVE-2022-28329

CVE-2022-28329

Vendor Siemens
Product SCALANCE W1788-1 M12
Weakness CWE-20 · Input validation
Published April 12, 2022
Last update August 3, 2024

CVSS base score

What the vulnerability does

01Description

A vulnerability has been identified in SCALANCE W1788-1 M12 (All versions < V3.0.0), SCALANCE W1788-2 EEC M12 (All versions < V3.0.0), SCALANCE W1788-2 M12 (All versions < V3.0.0), SCALANCE W1788-2IA M12 (All versions < V3.0.0). Affected devices do not properly handle malformed TCP packets received over the RemoteCapture feature. This could allow an attacker to lead to a denial of service condition which only affects the port used by the RemoteCapture feature.

Key dates

02Disclosure timeline

April 12, 2022 CVE published
August 3, 2024 Record updated