zuruck zur Themenseite

Articles and background information on the topic

Security

Günter Herkommer,

Vulnerability discovered in Scalance switches from Siemens

Nozomi Networks Labs has discovered a new vulnerability in Siemens' Scalance Switches. It affects the Telnet server and allows a hacker to crash the service by sending large amounts of packets via TCP port 23.

Scalance switches from Siemens are used for applications ranging from machine-related applications to networked plant components in Profinet environments.

© Siemens

If the attacker succeeds in crashing the service, the device restarts automatically and interrupts the network connection of all connected devices. This could potentially lead to operating processes being interrupted. The vulnerability is not necessarily easy to exploit, but an attacker does not need a deep understanding of specific protocols and systems. He only needs to be reasonably familiar with the standard Telnet protocol. Siemens has not released a firmware update regarding the vulnerability, but has provided recommendations for affected companies.

Nozomi Networks Labs has written a blog post about the discovered vulnerability.

Advertisement
  • Xing Icon
  • LinkedIn Icon
Advertisement
Back to topic page
Advertisement

You might also be interested in

Advertisement
Advertisement
Advertisement
Advertisement
Advertisement
Advertisement
Advertisement
Subscribe to our newsletter
Advertisement
Back to home