#VU16511 Uncaught exception in Siemens products - CVE-2018-11464
Published: December 12, 2018 / Updated: December 12, 2018
SINUMERIK 808D
SINUMERIK 840D
SINUMERIK 828D
Siemens
Description
The vulnerability allows a remote attacker to cause DoS condition on the target system.
The vulnerability exists due to uncaught exception if Port 5900/TCP is manually opened in the firewall configuration of network Port X130. A remote unauthenticated attacker can cause a denial-of-service condition of the VNC server.
Remediation
Update SINUMERIK 840D to version 4.7 SP6 HF5 or 4.8 SP3.