CVE-2019-18336: Siemens SIMATIC s7-300 CPU 312 Ifm Firmware
High severity, CVSS 7.5. EPSS: 1.7% chance of exploitation in the next 30 days.
A vulnerability has been identified in SIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants) (All versions < V3.X.17), SIMATIC TDC CP51M1 (All versions < V1.1.8), SIMATIC TDC CPU555 (All versions < V1.1.1), SINUMERIK 840D sl (All versions < V4.8.6), SINUMERIK 840D sl (All versions < V4.94). Specially crafted packets sent to port 102/tcp (Profinet) could cause the affected device to go into defect mode. A restart is required in order to recover the system. Successful exploitation requires an attacker to have network access to port 102/tcp, with no authentication. No user interation is required. At the time of advisory publication no public exploitation of this security vulnerability was known.
Affected products
- Siemens SIMATIC s7-300 CPU 312 Ifm Firmware: before 3.3.17 (fixed in 3.3.17)
- Siemens SIMATIC s7-300 CPU 313 Firmware: before 3.3.17 (fixed in 3.3.17)
- Siemens SIMATIC s7-300 CPU 314 Firmware: before 3.3.17 (fixed in 3.3.17)
- Siemens SIMATIC s7-300 CPU 314 Ifm Firmware: before 3.3.17 (fixed in 3.3.17)
- Siemens SIMATIC s7-300 CPU 315-2 Dp Firmware: before 3.3.17 (fixed in 3.3.17)
- Siemens SIMATIC s7-300 CPU 315 Firmware: before 3.3.17 (fixed in 3.3.17)
- Siemens SIMATIC s7-300 CPU 316-2 Dp Firmware: before 3.3.17 (fixed in 3.3.17)
- Siemens SIMATIC s7-300 CPU 318-2 Firmware: before 3.3.17 (fixed in 3.3.17)
- Siemens SIMATIC s7-300 CPU Firmware: before 3.3.17 (fixed in 3.3.17)
- Siemens SIMATIC Tdc CP51M1 Firmware: before 1.1.8 (fixed in 1.1.8)
- Siemens SIMATIC Tdc CPU555 Firmware: before 1.1.1 (fixed in 1.1.1)
- Siemens Sinumerik 840d Sl: before 4.8.6 (fixed in 4.8.6); before 4.94 (fixed in 4.94)
Published 2020-03-10. Last modified 2026-06-17.