Back to overview

CVE-2024-22039

CRITICAL
10.0
CVSS 3.1
Description
A vulnerability has been identified in Cerberus PRO EN Engineering Tool (All versions < IP8), Cerberus PRO EN Fire Panel FC72x IP6 (All versions < IP6 SR3), Cerberus PRO EN Fire Panel FC72x IP7 (All versions < IP7 SR5), Cerberus PRO EN X200 Cloud Distribution IP7 (All versions < V3.0.6602), Cerberus PRO EN X200 Cloud Distribution IP8 (All versions < V4.0.5016), Cerberus PRO EN X300 Cloud Distribution IP7 (All versions < V3.2.6601), Cerberus PRO EN X300 Cloud Distribution IP8 (All versions < V4.2.5015), Cerberus PRO UL Compact Panel FC922/924 (All versions < MP4), Cerberus PRO UL Engineering Tool (All versions < MP4), Cerberus PRO UL X300 Cloud Distribution (All versions < V4.3.0001), Desigo Fire Safety UL Compact Panel FC2025/2050 (All versions < MP4), Desigo Fire Safety UL Engineering Tool (All versions < MP4), Desigo Fire Safety UL X300 Cloud Distribution (All versions < V4.3.0001), Sinteso FS20 EN Engineering Tool (All versions < MP8), Sinteso FS20 EN Fire Panel FC20 MP6 (All versions < MP6 SR3), Sinteso FS20 EN Fire Panel FC20 MP7 (All versions < MP7 SR5), Sinteso FS20 EN X200 Cloud Distribution MP7 (All versions < V3.0.6602), Sinteso FS20 EN X200 Cloud Distribution MP8 (All versions < V4.0.5016), Sinteso FS20 EN X300 Cloud Distribution MP7 (All versions < V3.2.6601), Sinteso FS20 EN X300 Cloud Distribution MP8 (All versions < V4.2.5015), Sinteso Mobile (All versions < V3.0.0). The network communication library in affected systems does not validate the length of certain X.509 certificate attributes which might result in a stack-based buffer overflow. This could allow an unauthenticated remote attacker to execute code on the underlying operating system with root privileges.

Metadata

CVE ID
CVE-2024-22039
State
PUBLISHED
Assigner
siemens
Reserved
2024-01-04 13:24 UTC
Published
2024-03-12 10:21 UTC
Last updated
2025-12-16 18:13 UTC
Primary CWE
CWE-120
CWE-120: Buffer Copy without Checking Size of Input ('Classi…
Vendor / Product
Siemens / Cerberus PRO EN Engineering Tool
Sources
cve.org  ·  NVD

Severity & Metrics

10.0 CRITICAL CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H/E:P/RL:O/RC:C
SSVC — CISA Coordinator
Exploitation
none
Automatable
yes
Tech. Impact
total
Affected products (21)
VendorProductPlatformVersions
Siemens Cerberus PRO EN Engineering Tool 0 < IP8
Siemens Cerberus PRO EN Fire Panel FC72x IP6 0 < IP6 SR3
Siemens Cerberus PRO EN Fire Panel FC72x IP7 0 < IP7 SR5
Siemens Cerberus PRO EN X200 Cloud Distribution IP7 0 < V3.0.6602
Siemens Cerberus PRO EN X200 Cloud Distribution IP8 0 < V4.0.5016
Siemens Cerberus PRO EN X300 Cloud Distribution IP7 0 < V3.2.6601
Siemens Cerberus PRO EN X300 Cloud Distribution IP8 0 < V4.2.5015
Siemens Cerberus PRO UL Compact Panel FC922/924 0 < MP4
Siemens Cerberus PRO UL Engineering Tool 0 < MP4
Siemens Cerberus PRO UL X300 Cloud Distribution 0 < V4.3.0001
Siemens Desigo Fire Safety UL Compact Panel FC2025/2050 0 < MP4
Siemens Desigo Fire Safety UL Engineering Tool 0 < MP4
Siemens Desigo Fire Safety UL X300 Cloud Distribution 0 < V4.3.0001
Siemens Sinteso FS20 EN Engineering Tool 0 < MP8
Siemens Sinteso FS20 EN Fire Panel FC20 MP6 0 < MP6 SR3
Siemens Sinteso FS20 EN Fire Panel FC20 MP7 0 < MP7 SR5
Siemens Sinteso FS20 EN X200 Cloud Distribution MP7 0 < V3.0.6602
Siemens Sinteso FS20 EN X200 Cloud Distribution MP8 0 < V4.0.5016
Siemens Sinteso FS20 EN X300 Cloud Distribution MP7 0 < V3.2.6601
Siemens Sinteso FS20 EN X300 Cloud Distribution MP8 0 < V4.2.5015
Siemens Sinteso Mobile 0 < V3.0.0
Weakness (CWE)
CWESourceDescription
CWE-120 cna CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
CVSS scores (1)
ScoreSeverityVersionSourceVector
10.0 CRITICAL 3.1 cna CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H/E:P/RL:O/RC:C
Back to overview