CVE Database
/

CVE-2023-28831

Back to search

CVE-2023-28831

Published: Sep 12, 2023

Modified: Nov 11, 2025

PUBLISHED

CVSS v3.1

7.5

HIGH

Description

The OPC UA implementations (ANSI C and C++) in affected products contain an integer overflow vulnerability that could cause the application to run into an infinite loop during certificate validation. This could allow an unauthenticated remote attacker to create a denial of service condition by sending a specially crafted certificate.

VendorProductVersions

Siemens

SIMATIC BRAUMAT

affected
0 - < V8.1 SP1

Siemens

SIMATIC Cloud Connect 7 CC712

affected
0 - < V2.2

Siemens

SIMATIC Cloud Connect 7 CC716

affected
0 - < V2.2

Siemens

SIMATIC Comfort/Mobile RT

affected
0 - < *

Siemens

SIMATIC Drive Controller CPU 1504D TF

affected
0 - < V2.9.7

Siemens

SIMATIC Drive Controller CPU 1504D TF

affected
V3.0.1 - < V3.0.3

Siemens

SIMATIC Drive Controller CPU 1507D TF

affected
0 - < V2.9.7

Siemens

SIMATIC Drive Controller CPU 1507D TF

affected
V3.0.1 - < V3.0.3

Siemens

SIMATIC ET 200SP CPU 1510SP F-1 PN

affected
0 - < V2.9.7

Siemens

SIMATIC ET 200SP CPU 1510SP F-1 PN

affected
0 - < V3.0.3

Siemens

SIMATIC ET 200SP CPU 1510SP-1 PN

affected
0 - < V2.9.7

Siemens

SIMATIC ET 200SP CPU 1510SP-1 PN

affected
0 - < V3.0.3

Siemens

SIMATIC ET 200SP CPU 1512SP F-1 PN

affected
0 - < V2.9.7

Siemens

SIMATIC ET 200SP CPU 1512SP F-1 PN

affected
0 - < V3.0.3

Siemens

SIMATIC ET 200SP CPU 1512SP-1 PN

affected
0 - < V2.9.7

Siemens

SIMATIC ET 200SP CPU 1512SP-1 PN

affected
0 - < V3.0.3

Siemens

SIMATIC ET 200SP CPU 1514SP F-2 PN

affected
0 - < V3.0.3

Siemens

SIMATIC ET 200SP CPU 1514SP-2 PN

affected
0 - < V3.0.3

Siemens

SIMATIC ET 200SP CPU 1514SPT F-2 PN

affected
0 - < V3.0.3

Siemens

SIMATIC ET 200SP CPU 1514SPT-2 PN

affected
0 - < V3.0.3

Siemens

SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants)

affected
0 - < V21.9.7

Siemens

SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants)

affected
V30.0.0 - < V30.1.0

Siemens

SIMATIC IPC DiagMonitor

affected
0 - < *

Siemens

SIMATIC NET PC Software V14

affected
0 - < *

Siemens

SIMATIC NET PC Software V16

affected
0 - < V16 Update 8

Siemens

SIMATIC NET PC Software V17

affected
0 - < V17 SP1 Update 1

Siemens

SIMATIC NET PC Software V18

affected
0 - < V18 Update 1

Siemens

SIMATIC PCS 7 V9.1

affected
0 - < V9.1 SP2 UC08

Siemens

SIMATIC PCS neo V4.0

affected
0 - < *

Siemens

SIMATIC S7-1500 CPU 1511-1 PN

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 CPU 1511-1 PN

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 CPU 1511-1 PN

affected
0 - < V3.0.3

Siemens

SIMATIC S7-1500 CPU 1511C-1 PN

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 CPU 1511C-1 PN

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 CPU 1511F-1 PN

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 CPU 1511F-1 PN

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 CPU 1511F-1 PN

affected
0 - < V3.0.3

Siemens

SIMATIC S7-1500 CPU 1511T-1 PN

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 CPU 1511T-1 PN

affected
0 - < V3.0.3

Siemens

SIMATIC S7-1500 CPU 1511TF-1 PN

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 CPU 1511TF-1 PN

affected
0 - < V3.0.3

Siemens

SIMATIC S7-1500 CPU 1512C-1 PN

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 CPU 1512C-1 PN

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 CPU 1513-1 PN

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 CPU 1513-1 PN

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 CPU 1513-1 PN

affected
0 - < V3.0.3

Siemens

SIMATIC S7-1500 CPU 1513F-1 PN

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 CPU 1513F-1 PN

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 CPU 1513F-1 PN

affected
0 - < V3.0.3

Siemens

SIMATIC S7-1500 CPU 1515-2 PN

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 CPU 1515-2 PN

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 CPU 1515-2 PN

affected
0 - < V3.0.3

Siemens

SIMATIC S7-1500 CPU 1515F-2 PN

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 CPU 1515F-2 PN

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 CPU 1515F-2 PN

affected
0 - < V3.0.3

Siemens

SIMATIC S7-1500 CPU 1515T-2 PN

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 CPU 1515T-2 PN

affected
0 - < V3.0.3

Siemens

SIMATIC S7-1500 CPU 1515TF-2 PN

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 CPU 1515TF-2 PN

affected
0 - < V3.0.3

Siemens

SIMATIC S7-1500 CPU 1516-3 PN/DP

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 CPU 1516-3 PN/DP

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 CPU 1516-3 PN/DP

affected
0 - < V3.0.3

Siemens

SIMATIC S7-1500 CPU 1516F-3 PN/DP

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 CPU 1516F-3 PN/DP

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 CPU 1516F-3 PN/DP

affected
0 - < V3.0.3

Siemens

SIMATIC S7-1500 CPU 1516T-3 PN/DP

affected
0 - < V3.0.3

Siemens

SIMATIC S7-1500 CPU 1516TF-3 PN/DP

affected
0 - < V3.0.3

Siemens

SIMATIC S7-1500 CPU 1517-3 PN/DP

affected
0 - < V3.0.3

Siemens

SIMATIC S7-1500 CPU 1517F-3 PN/DP

affected
0 - < V3.0.3

Siemens

SIMATIC S7-1500 CPU 1517T-3 PN/DP

affected
0 - < V3.0.3

Siemens

SIMATIC S7-1500 CPU 1517TF-3 PN/DP

affected
0 - < V3.0.3

Siemens

SIMATIC S7-1500 CPU 1518-4 PN/DP

affected
0 - < V3.0.3

Siemens

SIMATIC S7-1500 CPU 1518-4 PN/DP MFP

affected
0 - < V3.0.3

Siemens

SIMATIC S7-1500 CPU 1518F-4 PN/DP

affected
0 - < V3.0.3

Siemens

SIMATIC S7-1500 CPU 1518F-4 PN/DP MFP

affected
0 - < V3.0.3

Siemens

SIMATIC S7-1500 CPU 1518T-4 PN/DP

affected
0 - < V3.0.3

Siemens

SIMATIC S7-1500 CPU 1518TF-4 PN/DP

affected
0 - < V3.0.3

Siemens

SIMATIC S7-1500 CPU S7-1518-4 PN/DP ODK

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 CPU S7-1518F-4 PN/DP ODK

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 ET 200pro: CPU 1513PRO F-2 PN

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 ET 200pro: CPU 1513PRO-2 PN

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 ET 200pro: CPU 1516PRO F-2 PN

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 ET 200pro: CPU 1516PRO-2 PN

affected
0 - < V2.9.7

Siemens

SIMATIC S7-1500 Software Controller V2

affected
0 - < V21.9.7

Siemens

SIMATIC S7-1500 Software Controller V3

affected
0 - < V30.1.0

Siemens

SIMATIC S7-PLCSIM Advanced

affected
0 - < V5.0 Update 2

Siemens

SIMATIC SISTAR

affected
0 - < V8.1 SP1

Siemens

SIMATIC WinCC OA V3.17

affected
0 - < V3.17 P029

Siemens

SIMATIC WinCC OA V3.18

affected
0 - < V3.18 P019

Siemens

SIMATIC WinCC OA V3.19

affected
0 - < V3.19 P005

Siemens

SIMATIC WinCC OPC UA Client

affected
0 - < V2.0.0.1

Siemens

SIMATIC WinCC Runtime Professional V16

affected
0 - < *

Siemens

SIMATIC WinCC Runtime Professional V17

affected
0 - < *

Siemens

SIMATIC WinCC Runtime Professional V18

affected
0 - < *

Siemens

SIMATIC WinCC Runtime Professional V19

affected
0 - < V19 Update 2

Siemens

SIMATIC WinCC Unified OPC UA Server

affected
0 - < V5.0.0.0

Siemens

SIMATIC WinCC V7.4

affected
0 - < *

Siemens

SIMATIC WinCC V7.5

affected
0 - < V7.5 SP2 Update 20

Siemens

SIMATIC WinCC V8.0

affected
0 - < V8.0 Update 5

Siemens

SINUMERIK MC

affected
0 - < V1.22

Siemens

SINUMERIK ONE

affected
0 - < V6.22

Siemens

SIPLUS ET 200SP CPU 1510SP F-1 PN

affected
0 - < V2.9.7

Siemens

SIPLUS ET 200SP CPU 1510SP F-1 PN RAIL

affected
0 - < V2.9.7

Siemens

SIPLUS ET 200SP CPU 1510SP-1 PN

affected
0 - < V2.9.7

Siemens

SIPLUS ET 200SP CPU 1510SP-1 PN

affected
0 - < V2.9.7

Siemens

SIPLUS ET 200SP CPU 1510SP-1 PN RAIL

affected
0 - < V2.9.7

Siemens

SIPLUS ET 200SP CPU 1510SP-1 PN RAIL

affected
0 - < V2.9.7

Siemens

SIPLUS ET 200SP CPU 1512SP F-1 PN

affected
0 - < V2.9.7

Siemens

SIPLUS ET 200SP CPU 1512SP F-1 PN

affected
0 - < V2.9.7

Siemens

SIPLUS ET 200SP CPU 1512SP F-1 PN RAIL

affected
0 - < V2.9.7

Siemens

SIPLUS ET 200SP CPU 1512SP F-1 PN RAIL

affected
0 - < V2.9.7

Siemens

SIPLUS ET 200SP CPU 1512SP-1 PN

affected
0 - < V2.9.7

Siemens

SIPLUS ET 200SP CPU 1512SP-1 PN

affected
0 - < V2.9.7

Siemens

SIPLUS ET 200SP CPU 1512SP-1 PN RAIL

affected
0 - < V2.9.7

Siemens

SIPLUS ET 200SP CPU 1512SP-1 PN RAIL

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1511-1 PN

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1511-1 PN

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1511-1 PN

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1511-1 PN

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1511-1 PN T1 RAIL

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1511-1 PN T1 RAIL

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1511-1 PN TX RAIL

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1511-1 PN TX RAIL

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1511F-1 PN

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1511F-1 PN

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1513-1 PN

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1513-1 PN

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1513-1 PN

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1513-1 PN

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1513F-1 PN

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1513F-1 PN

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1515F-2 PN

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1515F-2 PN

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1515F-2 PN RAIL

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1515F-2 PN T2 RAIL

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1516-3 PN/DP

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1516-3 PN/DP

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1516-3 PN/DP

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1516-3 PN/DP

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1516-3 PN/DP RAIL

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1516-3 PN/DP TX RAIL

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1516F-3 PN/DP

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1516F-3 PN/DP

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1516F-3 PN/DP RAIL

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1516F-3 PN/DP RAIL

affected
0 - < V2.9.7

Siemens

SIPLUS S7-1500 CPU 1518-4 PN/DP

affected
0 - < V3.0.3

Siemens

SIPLUS S7-1500 CPU 1518-4 PN/DP MFP

affected
0 - < V3.0.3

Siemens

SIPLUS S7-1500 CPU 1518F-4 PN/DP

affected
0 - < V3.0.3

Weaknesses (CWE)

CVSS v3.1 Details

CVSS v3.1 Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Attack Vector

Network

Attack Complexity

Low

Privileges Required

None

User Interaction

None

Scope

Unchanged

Confidentiality

None

Integrity

None

Availability

High

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now