High severity7.5NVD Advisory· Published Apr 12, 2022· Updated Jun 17, 2026
CVE-2022-27194
CVE-2022-27194
Description
A vulnerability has been identified in SIMATIC PCS neo (Administration Console) (All versions < V3.1 SP1), SINETPLAN (All versions), TIA Portal (V15, V15.1, V16 and V17). The affected system cannot properly process specially crafted packets sent to port 8888/tcp. A remote attacker could exploit this vulnerability to cause a Denial-of-Service condition. The affected devices must be restarted manually.
Affected products
13All versions+ 1 more
- (no CPE)range: All versions
- cpe:2.3:a:siemens:sinetplan:*:*:*:*:*:*:*:*
- Range: V15, V15.1, V16 and V17
<V3.1 SP1+ 2 more
- (no CPE)range: <V3.1 SP1
- cpe:2.3:a:siemens:simatic_pcs_neo:*:*:*:*:*:*:*:*range: <3.1
- cpe:2.3:a:siemens:simatic_pcs_neo:3.1:-:*:*:*:*:*:*
- Range: V15, V15.1, V16 and V17
cpe:2.3:a:siemens:totally_integrated_automation_portal:15:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:siemens:totally_integrated_automation_portal:15:*:*:*:*:*:*:*
- cpe:2.3:a:siemens:totally_integrated_automation_portal:15.1:-:*:*:*:*:*:*
- cpe:2.3:a:siemens:totally_integrated_automation_portal:16:*:*:*:*:*:*:*
- cpe:2.3:a:siemens:totally_integrated_automation_portal:17:*:*:*:*:*:*:*
- Siemens/SIMATIC PCS neo (Administration Console)v5Range: All versions < V3.1 SP1
- Siemens/SINETPLANv5Range: All versions
Patches
Vulnerability mechanics
References
1- cert-portal.siemens.com/productcert/pdf/ssa-711829.pdfnvdMitigationPatchVendor Advisory
News mentions
0No linked articles in our index yet.