Vulnerability record · CVE-2018-13815 · published 13 December 2018
CVE-2018-13815: Siemens simatic s7-1200 firmware uncontrolled resource consumption vulnerability
Siemens · Simatic S7 1200 Firmware
A vulnerability has been identified in SIMATIC S7-1200 (All versions), SIMATIC S7-1500 (All Versions < V2.6). An attacker could exhaust the available connection pool of an affected device by opening a sufficient number of connections to the device. Successful exploitation requires an attacker to be able to send packets to port 102/tcp of the affected device. No user interaction and no user privileges are required to exploit the vulnerability. The vulnerability, if exploited, could cause a Denial-of-Service condition impacting the availability of the system. At the time of advisory publication no public exploitation of this vulnerability was known.
Description
A vulnerability has been identified in SIMATIC S7-1200 (All versions), SIMATIC S7-1500 (All Versions < V2.6). An attacker could exhaust the available connection pool of an affected device by opening a sufficient number of connections to the device. Successful exploitation requires an attacker to be able to send packets to port 102/tcp of the affected device. No user interaction and no user privileges are required to exploit the vulnerability. The vulnerability, if exploited, could cause a Denial-of-Service condition impacting the availability of the system. At the time of advisory publication no public exploitation of this vulnerability was known.
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected products
2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
| Link | Tags |
|---|---|
| http://www.securityfocus.com/bid/105928 | Third Party AdvisoryVDB Entry |
| https://cert-portal.siemens.com/productcert/pdf/ssa-584286.pdf | Vendor Advisory |
| http://www.securityfocus.com/bid/105928 | Third Party AdvisoryVDB Entry |
| https://cert-portal.siemens.com/productcert/pdf/ssa-584286.pdf | Vendor Advisory |
Track CVE-2018-13815 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2018-13815), CISA KEV, FIRST EPSS (scores of 2026-09-29). This page is refreshed as NVD updates the record.