Release date:
Updated on: 2013-03-27
Affected Systems:
Siemens CP 1, 1616
Siemens CP 1, 1604
Description:
--------------------------------------------------------------------------------
Bugtraq id: 58696
CVE (CAN) ID: CVE-2013-0659
Siemens CP 1616 and CP 1604 are real-time communication modules (PCI ).
Siemens CP 1616 and CP 1604 have the Access Security Bypass Vulnerability. Attackers can exploit this vulnerability to execute arbitrary code, obtain sensitive information, and cause DOS.
<* Source: Christopher Scheuring
J & #195; & #188; rgen Bilberger
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Siemens
-------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.automation.siemens.com/mcms/industrial-communication/en/ie/system-interfacing/system-inte