Medium severity6.5NVD Advisory· Published Apr 12, 2022· Updated Jun 17, 2026
CVE-2022-28329
CVE-2022-28329
Description
A vulnerability has been identified in SCALANCE W1788-1 M12 (All versions < V3.0.0), SCALANCE W1788-2 EEC M12 (All versions < V3.0.0), SCALANCE W1788-2 M12 (All versions < V3.0.0), SCALANCE W1788-2IA M12 (All versions < V3.0.0). Affected devices do not properly handle malformed TCP packets received over the RemoteCapture feature. This could allow an attacker to lead to a denial of service condition which only affects the port used by the RemoteCapture feature.
Affected products
10- Range: <V3.0.0
- Range: <V3.0.0
All versions < V3.0.0+ 3 more
- (no CPE)range: All versions < V3.0.0
- (no CPE)range: All versions < V3.0.0
- (no CPE)range: All versions < V3.0.0
- (no CPE)range: All versions < V3.0.0
- cpe:2.3:o:siemens:scalance_w1788-2ia_m12_firmware:*:*:*:*:*:*:*:*Range: <3.0.0
- cpe:2.3:o:siemens:scalance_w1788-2_m12_firmware:*:*:*:*:*:*:*:*Range: <3.0.0
- cpe:2.3:o:siemens:scalance_w1788-2_eec_m12_firmware:*:*:*:*:*:*:*:*Range: <3.0.0
- cpe:2.3:o:siemens:scalance_w1788-1_m12_firmware:*:*:*:*:*:*:*:*Range: <3.0.0
Patches
Vulnerability mechanics
References
1- cert-portal.siemens.com/productcert/pdf/ssa-392912.pdfnvdMitigationPatchVendor Advisory
News mentions
0No linked articles in our index yet.