Security Advisory

CVE-2020-25241

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2021-03-15 17:03:30
Last updated 2024-08-04 15:33:05
Assigner siemens
CVSS score not scored
State PUBLISHED

Description

A vulnerability has been identified in SIMATIC MV400 family (All Versions < V7.0.6). The underlying TCP stack of the affected products does not correctly validate the sequence number for incoming TCP RST packages. An attacker could exploit this to terminate arbitrary TCP sessions.