Vulnerability record · CVE-2017-16718 · published 27 June 2018
CVE-2017-16718: Beckhoff twincat insufficiently protected credentials vulnerability
Beckhoff · Twincat
Beckhoff TwinCAT 3 supports communication over ADS. ADS is a protocol for industrial automation in protected environments. This protocol uses user configured routes, that can be edited remotely via ADS. This special command supports encrypted authentication with username/password. The encryption uses a fixed key, that could be extracted by an attacker. Precondition of the exploitation of this weakness is network access at the moment a route is added.
Description
Beckhoff TwinCAT 3 supports communication over ADS. ADS is a protocol for industrial automation in protected environments. This protocol uses user configured routes, that can be edited remotely via ADS. This special command supports encrypted authentication with username/password. The encryption uses a fixed key, that could be extracted by an attacker. Precondition of the exploitation of this weakness is network access at the moment a route is added.
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Affected products
1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
| Link | Tags |
|---|---|
| https://download.beckhoff.com/download/Document/product-security/Advisories/advisory-2017-002.pdf | MitigationVendor Advisory |
| https://download.beckhoff.com/download/Document/product-security/Advisories/advisory-2017-002.pdf | MitigationVendor Advisory |
Track CVE-2017-16718 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2017-16718), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.