Medium severity4.9NVD Advisory· Published Nov 6, 2017· Updated May 13, 2026
CVE-2017-14023
CVE-2017-14023
Description
An Improper Input Validation issue was discovered in Siemens SIMATIC PCS 7 V8.1 prior to V8.1 SP1 with WinCC V7.3 Upd 13, and V8.2 all versions. The improper input validation vulnerability has been identified, which may allow an authenticated remote attacker who is a member of the administrators group to crash services by sending specially crafted messages to the DCOM interface.
Affected products
3cpe:2.3:a:siemens:simatic_pcs7:8.1:-:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:siemens:simatic_pcs7:8.1:-:*:*:*:*:*:*
- cpe:2.3:a:siemens:simatic_pcs7:8.2:-:*:*:*:*:*:*
- cpe:2.3:a:siemens:simatic_wincc:7.3:update13:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.securityfocus.com/bid/101680nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1039729nvdThird Party AdvisoryVDB Entry
- ics-cert.us-cert.gov/advisories/ICSA-17-306-01nvdThird Party AdvisoryUS Government Resource
News mentions
0No linked articles in our index yet.