CVE-2018-13798 is a Denial-of-Service vulnerability affecting Siemens SICAM A8000 CP-8000, CP-802X, and CP-8050 devices running firmware versions prior to V14 (or V2.00 for CP-8050). An unauthenticated remote attacker can exploit this by sending specially crafted network packets to ports 80/TCP or 443/TCP, causing the web server to become unresponsive and requiring a system reboot for recovery. With a CVSS v3 score of 7.5 (High), this vulnerability is easily exploitable over the network without requiring any privileges or user interaction, severely impacting the availability of the affected devices. While exploit code is publicly available, there is no evidence of active exploitation, and it has received minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 14CPE matchmatch criteria | cpe:2.3:o:siemens:sicam_a8000_cp-8000_firmware:*:*:*:*:*:*:*:* | ||
< 14CPE matchmatch criteria | cpe:2.3:o:siemens:sicam_a8000_cp-802x_firmware:*:*:*:*:*:*:*:* | ||
< 2.00CPE matchmatch criteria | cpe:2.3:o:siemens:sicam_a8000_cp-8050_firmware:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.