OTPulse

Denial of Service Vulnerability During BLE Pairing in SENTRON Powercenter 1000/1100

Low RiskSSA-620799Dec 10, 2024
Summary

SENTRON Powercenter devices (models 7KN1110-0MC00 and 7KN1111-0MC00) are not affected by a denial of service vulnerability during BLE pairing. Initial advisory from 2024-12-10 has been clarified—detailed analysis confirmed these devices are not vulnerable to the reported issue.

What this means
What could happen
No impact. SENTRON Powercenter devices are not affected by this vulnerability. The advisory clarifies that detailed analysis showed the products are not vulnerable to the reported denial of service issue during BLE pairing.
Who's at risk
This advisory does not affect SENTRON Powercenter devices. The vulnerability was initially reported but has been clarified as not affecting these power distribution and monitoring devices used in electrical infrastructure.
How it could be exploited
Not applicable. The devices are not vulnerable to this reported BLE pairing denial of service.
advisory clarification: no actual vulnerabilityinitial false positive report
Exploitability
Low exploit probability (EPSS 0.1%)
Affected products (2)
2 pending
ProductAffected VersionsFix Status
SENTRON Powercenter 1000 (7KN1110-0MC00)All versionsNo fix yet
SENTRON Powercenter 1100 (7KN1111-0MC00)All versionsNo fix yet
Remediation & Mitigation
0/1
Long-term hardening
0/1
HARDENINGNo action required for the reported vulnerability. Continue following Siemens operational guidelines for Industrial Security as standard practice.
↑↓ Navigate · Esc Close
API: /api/v1/advisories/91f06cb1-7bf1-4620-9bc5-6b702d694767