A vulnerability has been identified in SIMATIC CP 1543-1 (incl. SIPLUS variants) (All versions < V3.0), SIMATIC CP 1545-1 (All versions < V1.1). An attacker with access to the subnet of the affected device could retrieve sensitive information stored in cleartext.
References
Link | Resource |
---|---|
https://cert-portal.siemens.com/productcert/pdf/ssa-535997.pdf | Patch Vendor Advisory |
Configurations
History
14 Jun 2022, 10:15
Type | Values Removed | Values Added |
---|---|---|
Summary | A vulnerability has been identified in SIMATIC CP 1543-1 (incl. SIPLUS variants) (All versions < V3.0), SIMATIC CP 1545-1 (All versions < V1.1). An attacker with access to the subnet of the affected device could retrieve sensitive information stored in cleartext. |
23 Sep 2021, 17:32
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:h:siemens:simatic_cp_1543-1:-:*:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_cp_1545-1_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_cp_1543-1_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:siemens:simatic_cp_1545-1:-:*:*:*:*:*:*:* |
|
CVSS |
v2 : v3 : |
v2 : 3.3
v3 : 6.5 |
References | (MISC) https://cert-portal.siemens.com/productcert/pdf/ssa-535997.pdf - Patch, Vendor Advisory |
14 Sep 2021, 11:42
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2021-09-14 11:15
Updated : 2024-02-04 22:08
NVD link : CVE-2021-33716
Mitre link : CVE-2021-33716
CVE.ORG link : CVE-2021-33716
JSON object : View
Products Affected
siemens
- simatic_cp_1543-1
- simatic_cp_1545-1
- simatic_cp_1543-1_firmware
- simatic_cp_1545-1_firmware
CWE
CWE-312
Cleartext Storage of Sensitive Information