In SIMATIC MV400 family versions prior to v7.0.6, the ISN generator is initialized with a constant value and has constant increments. An attacker could predict and hijack TCP sessions.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Simatic_mv420_firmware | Siemens | * | 7.0.6 (excluding) |