CVE-2020-25241

Publication date

2021-03-15 17:03:30

Family

siemens

State

PUBLISHED

Description

A vulnerability has been identified in SIMATIC MV400 family (All Versions < V7.0.6). The underlying TCP stack of the affected products does not correctly validate the sequence number for incoming TCP RST packages. An attacker could exploit this to terminate arbitrary TCP sessions.