VYPR
High severity7.5NVD Advisory· Published Apr 12, 2022· Updated Jun 17, 2026

CVE-2022-27194

CVE-2022-27194

Description

A vulnerability has been identified in SIMATIC PCS neo (Administration Console) (All versions < V3.1 SP1), SINETPLAN (All versions), TIA Portal (V15, V15.1, V16 and V17). The affected system cannot properly process specially crafted packets sent to port 8888/tcp. A remote attacker could exploit this vulnerability to cause a Denial-of-Service condition. The affected devices must be restarted manually.

Affected products

13
  • Siemens Foundation/SINETPLANllm-fuzzy2 versions
    All versions+ 1 more
    • (no CPE)range: All versions
    • cpe:2.3:a:siemens:sinetplan:*:*:*:*:*:*:*:*
  • Range: V15, V15.1, V16 and V17
  • Siemens Foundation/PCS neollm-fuzzy3 versions
    <V3.1 SP1+ 2 more
    • (no CPE)range: <V3.1 SP1
    • cpe:2.3:a:siemens:simatic_pcs_neo:*:*:*:*:*:*:*:*range: <3.1
    • cpe:2.3:a:siemens:simatic_pcs_neo:3.1:-:*:*:*:*:*:*
  • Range: V15, V15.1, V16 and V17
  • cpe:2.3:a:siemens:totally_integrated_automation_portal:15:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:a:siemens:totally_integrated_automation_portal:15:*:*:*:*:*:*:*
    • cpe:2.3:a:siemens:totally_integrated_automation_portal:15.1:-:*:*:*:*:*:*
    • cpe:2.3:a:siemens:totally_integrated_automation_portal:16:*:*:*:*:*:*:*
    • cpe:2.3:a:siemens:totally_integrated_automation_portal:17:*:*:*:*:*:*:*
  • Siemens/SIMATIC PCS neo (Administration Console)v5
    Range: All versions < V3.1 SP1
  • Siemens/SINETPLANv5
    Range: All versions

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.