SIEMENS-SSA-918992
·
Published 2024-03-12
·
View on Siemens ProductCERT ↗
SSA-918992 V1.0: Unused HTTP Service on SENTRON 3KC ATC6 Ethernet Module
CVSS N/A
MEDIUM
Risk Summary
<p>SENTRON 3KC ATC6 Expansion Module Ethernet exposes an unused, unstable http service at port 80/tcp on the Modbus-TCP Ethernet, which could allow an attacker on the same Modbus network to create a denial of service condition that forces the device to reboot.</p> <p>Siemens is preparing fix versions and recommends specific countermeasures for products where fixes are not, or not yet available.</p>
Remediations
- Refer to Siemens ProductCERT advisory for patch and remediation guidance.
Affected Vendors
Siemens
Affected Products (1)
Siemens
·
SSA-918992 V1.0: Unused HTTP Service on SENTRON 3KC ATC6 Ethernet Module
See advisory
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more