A vulnerability has been identified in SIMATIC Energy Manager Basic (All versions < V7.5), SIMATIC Energy Manager PRO (All versions < V7.5), SIMATIC IPC DiagBase (All versions), SIMATIC IPC DiagMonitor (All versions), SIMIT V10 (All versions), SIMIT V11 (All versions < V11.1). Unified Automation .NET based OPC UA Server SDK before 3.2.2 used in Siemens products are affected by a similar vulnerability as documented in CVE-2023-27321 for the OPC Foundation UA .NET Standard implementation. A successful attack may lead to high load situation and memory exhaustion, and may block the server.
History

Thu, 01 May 2025 04:15:00 +0000

Type Values Removed Values Added
First Time appeared Siemens
Siemens simatic Energy Manager Basic
Siemens simatic Energy Manager Pro
Siemens simatic Ipc Diagbase
Siemens simatic Ipc Diagmonitor
Siemens simit V10
Siemens simit V11
CPEs cpe:2.3:a:siemens:simatic_energy_manager_basic:*:*:*:*:*:*:*:*
cpe:2.3:a:siemens:simatic_energy_manager_pro:*:*:*:*:*:*:*:*
cpe:2.3:a:siemens:simit_v10:*:*:*:*:*:*:*:*
cpe:2.3:a:siemens:simit_v11:*:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_ipc_diagbase:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_ipc_diagmonitor:-:*:*:*:*:*:*:*
Vendors & Products Siemens
Siemens simatic Energy Manager Basic
Siemens simatic Energy Manager Pro
Siemens simatic Ipc Diagbase
Siemens simatic Ipc Diagmonitor
Siemens simit V10
Siemens simit V11
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: siemens

Published: 2024-07-09T12:04:42.619Z

Updated: 2025-05-01T03:55:22.367Z

Reserved: 2024-06-21T15:06:40.772Z

Link: CVE-2023-52891

cve-icon Vulnrichment

Updated: 2024-08-02T23:18:41.378Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-07-09T12:15:11.263

Modified: 2024-11-21T08:40:48.800

Link: CVE-2023-52891

cve-icon Redhat

No data.