CVE-2020-7588 Details
Description
A vulnerability has been identified in Opcenter Execution Discrete (All versions < V3.2), Opcenter Execution Foundation (All versions < V3.2), Opcenter Execution Process (All versions < V3.2), Opcenter Intelligence (All versions < V3.3), Opcenter Quality (All versions < V11.3), Opcenter RD&L (V8.0), SIMATIC IT LMS (All versions < V2.6), SIMATIC IT Production Suite (All versions < V8.0), SIMATIC Notifier Server for Windows (All versions), SIMATIC PCS neo (All versions < V3.0 SP1), SIMATIC STEP 7 (TIA Portal) V15 (All versions < V15.1 Update 5), SIMATIC STEP 7 (TIA Portal) V16 (All versions < V16 Update 2), SIMOCODE ES V15.1 (All versions < V15.1 Update 4), SIMOCODE ES V16 (All versions < V16 Update 1), Soft Starter ES V15.1 (All versions < V15.1 Update 3), Soft Starter ES V16 (All versions < V16 Update 1). Sending a specially crafted packet to the affected service could cause a partial remote denial-of-service, that would cause the service to restart itself.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
No SSVC data is available for this CVE.
References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://cert-portal.siemens.com/productcert/pdf/ssa-841348.pdf | CVE | Vendor Advisory |
| https://cert-portal.siemens.com/productcert/pdf/ssa-841348.pdf | [email protected] | Vendor Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-20 | Improper Input Validation | [email protected] |
| CWE-20 | Improper Input Validation | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| siemens opcenter execution discrete | < 3.2 |
CPE
Remediation
| |
| siemens opcenter execution foundation | < 3.2 |
CPE
Remediation
| |
| siemens opcenter execution process | < 3.2 |
CPE
Remediation
| |
| siemens opcenter intelligence | All versions |
CPE
Remediation
| |
| siemens opcenter quality | < 11.3 |
CPE
Remediation
| |
| siemens opcenter rd&l | 8.0 |
CPE
Remediation
| |
| siemens simatic it lms | All versions |
CPE
Remediation
| |
| siemens simatic it production suite | All versions |
CPE
Remediation
| |
| siemens simatic notifier server | All versions |
CPE
Remediation
| |
| siemens simatic pcs neo | All versions |
CPE
Remediation
| |
| siemens simatic step 7 | >= 15, <= 15.1 16 - 16 update_1 |
CPE
Remediation
| |
| siemens simocode es | All versions |
CPE
Remediation
| |
| siemens soft starter es | All versions |
CPE
Remediation
| |
Change History
18 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Nov 21, 2024 | CVE Modified | CVE |
| May 14, 2024 | CVE Modified | [email protected] |
| Jan 30, 2023 | Modified Analysis | [email protected] |
| Aug 10, 2022 | CVE Modified | [email protected] |
| Aug 10, 2022 | CVE Modified | [email protected] |
| Jul 13, 2021 | CVE Modified | [email protected] |
| Jul 13, 2021 | CVE Modified | [email protected] |
| Apr 22, 2021 | CVE Modified | [email protected] |
| Mar 15, 2021 | CVE Modified | [email protected] |
| Mar 15, 2021 | CVE Modified | [email protected] |
| Feb 9, 2021 | CVE Modified | [email protected] |
| Dec 14, 2020 | CVE Modified | [email protected] |
| Dec 14, 2020 | CVE Modified | [email protected] |
| Nov 12, 2020 | CVE Modified | [email protected] |
| Sep 9, 2020 | CVE Modified | [email protected] |
| Aug 14, 2020 | CVE Modified | [email protected] |
| Jul 20, 2020 | Initial Analysis | [email protected] |