Constantin Schieber-Knöbl

Researcher fromSEC Consult Vulnerability Lab
#2585of 53,635
96Total CVSS
Vulnerabilities · 13
Medium
6
High
5
Critical
2
PT-2025-6195
4.6
2025-02-11
Siemens · Siprotec 5 7Sa87 · CVE-2024-53651
Name of the Vulnerable Software and Affected Versions: SIPROTEC 5 6MD84 (CP300) (All versions) SIPROTEC 5 6MD85 (CP200) (All versions) SIPROTEC 5 6MD85 (CP300) (All versions) SIPROTEC 5 6MD86 (CP200) (All versions) SIPROTEC 5 6MD86 (CP300) (All versions) SIPROTEC 5 6MD89 (CP300) (All versions) SIPROTEC 5 6MU85 (CP300) (All versions) SIPROTEC 5 7KE85 (CP200) (All versions) SIPROTEC 5 7KE85 (CP300) (All versions) SIPROTEC 5 7SA82 (CP100) (All versions) SIPROTEC 5 7SA82 (CP150) (All versions) SIPROTEC 5 7SA86 (CP200) (All versions) SIPROTEC 5 7SA86 (CP300) (All versions) SIPROTEC 5 7SA87 (CP200) (All versions) SIPROTEC 5 7SA87 (CP300) (All versions) SIPROTEC 5 7SD82 (CP100) (All versions) SIPROTEC 5 7SD82 (CP150) (All versions) SIPROTEC 5 7SD86 (CP200) (All versions) SIPROTEC 5 7SD86 (CP300) (All versions) SIPROTEC 5 7SD87 (CP200) (All versions) SIPROTEC 5 7SD87 (CP300) (All versions) SIPROTEC 5 7SJ81 (CP100) (All versions) SIPROTEC 5 7SJ81 (CP150) (All versions) SIPROTEC 5 7SJ82 (CP100) (All versions) SIPROTEC 5 7SJ82 (CP150) (All versions) SIPROTEC 5 7SJ85 (CP200) (All versions) SIPROTEC 5 7SJ85 (CP300) (All versions) SIPROTEC 5 7SJ86 (CP200) (All versions) SIPROTEC 5 7SJ86 (CP300) (All versions) SIPROTEC 5 7SK82 (CP100) (All versions) SIPROTEC 5 7SK82 (CP150) (All versions) SIPROTEC 5 7SK85 (CP200) (All versions) SIPROTEC 5 7SK85 (CP300) (All versions) SIPROTEC 5 7SL82 (CP100) (All versions) SIPROTEC 5 7SL82 (CP150) (All versions) SIPROTEC 5 7SL86 (CP200) (All versions) SIPROTEC 5 7SL86 (CP300) (All versions) SIPROTEC 5 7SL87 (CP200) (All versions) SIPROTEC 5 7SL87 (CP300) (All versions) SIPROTEC 5 7SS85 (CP200) (All versions) SIPROTEC 5 7SS85 (CP300) (All versions) SIPROTEC 5 7ST85 (CP200) (All versions) SIPROTEC 5 7ST85 (CP300) (All versions) SIPROTEC 5 7ST86 (CP300) (All versions) SIPROTEC 5 7SX82 (CP150) (All versions) SIPROTEC 5 7SX85 (CP300) (All versions) SIPROTEC 5 7SY82 (CP150) (All versions) SIPROTEC 5 7UM85 (CP300) (All versions) SIPROTEC 5 7UT82 (CP100) (All versions) SIPROTEC 5 7UT82 (CP150) (All versions) SIPROTEC 5 7UT85 (CP200) (All versions) SIPROTEC 5 7UT85 (CP300) (All versions) SIPROTEC 5 7UT86 (CP200) (All versions) SIPROTEC 5 7UT86 (CP300) (All versions) SIPROTEC 5 7UT87 (CP200) (All versions) SIPROTEC 5 7UT87 (CP300) (All versions) SIPROTEC 5 7VE85 (CP300) (All versions) SIPROTEC 5 7VK87 (CP200) (All versions) SIPROTEC 5 7VK87 (CP300) (All versions) SIPROTEC 5 7VU85 (CP300) (All versions) SIPROTEC 5 Compact 7SX800 (CP050) (All versions) Description: The affected devices do not encrypt certain data within the on-board flash storage on their PCB. This could allow an attacker with physical access to read the entire filesystem of the device. Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2025-6194
7.2
2025-02-11
Siemens · Siprotec 5 7Sa87 · CVE-2024-53648
Name of the Vulnerable Software and Affected Versions: SIPROTEC 5 6MD84 (CP300) versions prior to V9.90 SIPROTEC 5 6MD85 (CP200) versions prior to V9.90 SIPROTEC 5 6MD85 (CP300) versions prior to V9.90 SIPROTEC 5 6MD86 (CP200) versions prior to V9.90 SIPROTEC 5 6MD86 (CP300) versions prior to V9.90 SIPROTEC 5 6MD89 (CP300) versions prior to V9.90 SIPROTEC 5 6MU85 (CP300) versions prior to V9.90 SIPROTEC 5 7KE85 (CP200) versions prior to V9.90 SIPROTEC 5 7KE85 (CP300) versions prior to V9.90 SIPROTEC 5 7SA82 (CP100) versions prior to V9.90 SIPROTEC 5 7SA82 (CP150) versions prior to V9.90 SIPROTEC 5 7SA86 (CP200) versions prior to V9.90 SIPROTEC 5 7SA86 (CP300) versions prior to V9.90 SIPROTEC 5 7SA87 (CP200) versions prior to V9.90 SIPROTEC 5 7SA87 (CP300) versions prior to V9.90 SIPROTEC 5 7SD82 (CP100) versions prior to V9.90 SIPROTEC 5 7SD82 (CP150) versions prior to V9.90 SIPROTEC 5 7SD86 (CP200) versions prior to V9.90 SIPROTEC 5 7SD86 (CP300) versions prior to V9.90 SIPROTEC 5 7SD87 (CP200) versions prior to V9.90 SIPROTEC 5 7SD87 (CP300) versions prior to V9.90 SIPROTEC 5 7SJ81 (CP100) versions prior to V9.90 SIPROTEC 5 7SJ81 (CP150) versions prior to V9.90 SIPROTEC 5 7SJ82 (CP100) versions prior to V9.90 SIPROTEC 5 7SJ82 (CP150) versions prior to V9.90 SIPROTEC 5 7SJ85 (CP200) versions prior to V9.90 SIPROTEC 5 7SJ85 (CP300) versions prior to V9.90 SIPROTEC 5 7SJ86 (CP200) versions prior to V9.90 SIPROTEC 5 7SJ86 (CP300) versions prior to V9.90 SIPROTEC 5 7SK82 (CP100) versions prior to V9.90 SIPROTEC 5 7SK82 (CP150) versions prior to V9.90 SIPROTEC 5 7SK85 (CP200) versions prior to V9.90 SIPROTEC 5 7SK85 (CP300) versions prior to V9.90 SIPROTEC 5 7SL82 (CP100) versions prior to V9.90 SIPROTEC 5 7SL82 (CP150) versions prior to V9.90 SIPROTEC 5 7SL86 (CP200) versions prior to V9.90 SIPROTEC 5 7SL86 (CP300) versions prior to V9.90 SIPROTEC 5 7SL87 (CP200) versions prior to V9.90 SIPROTEC 5 7SL87 (CP300) versions prior to V9.90 SIPROTEC 5 7SS85 (CP200) versions prior to V9.90 SIPROTEC 5 7SS85 (CP300) versions prior to V9.90 SIPROTEC 5 7ST85 (CP200) versions prior to V9.90 SIPROTEC 5 7ST85 (CP300) versions prior to V9.90 SIPROTEC 5 7ST86 (CP300) versions prior to V9.90 SIPROTEC 5 7SX82 (CP150) versions prior to V9.90 SIPROTEC 5 7SX85 (CP300) versions prior to V9.90 SIPROTEC 5 7SY82 (CP150) versions prior to V9.90 SIPROTEC 5 7UM85 (CP300) versions prior to V9.90 SIPROTEC 5 7UT82 (CP100) versions prior to V9.90 SIPROTEC 5 7UT82 (CP150) versions prior to V9.90 SIPROTEC 5 7UT85 (CP200) versions prior to V9.90 SIPROTEC 5 7UT85 (CP300) versions prior to V9.90 SIPROTEC 5 7UT86 (CP200) versions prior to V9.90 SIPROTEC 5 7UT86 (CP300) versions prior to V9.90 SIPROTEC 5 7UT87 (CP200) versions prior to V9.90 SIPROTEC 5 7UT87 (CP300) versions prior to V9.90 SIPROTEC 5 7VE85 (CP300) versions prior to V9.90 SIPROTEC 5 7VK87 (CP200) versions prior to V9.90 SIPROTEC 5 7VK87 (CP300) versions prior to V9.90 SIPROTEC 5 7VU85 (CP300) versions prior to V9.90 SIPROTEC 5 Compact 7SX800 (CP050) versions prior to V9.90 Description: The affected devices do not properly limit access to a development shell accessible over a physical interface. This could allow an unauthenticated attacker with physical access to the device to execute arbitrary commands on the device. Recommendations: For SIPROTEC 5 6MD84 (CP300) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 6MD85 (CP200) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 6MD85 (CP300) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 6MD86 (CP200) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 6MD86 (CP300) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 6MD89 (CP300) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 6MU85 (CP300) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7KE85 (CP200) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7KE85 (CP300) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SA82 (CP100) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SA82 (CP150) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SA86 (CP200) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SA86 (CP300) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SA87 (CP200) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SA87 (CP300) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SD82 (CP100) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SD82 (CP150) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SD86 (CP200) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SD86 (CP300) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SD87 (CP200) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SD87 (CP300) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SJ81 (CP100) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SJ81 (CP150) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SJ82 (CP100) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SJ82 (CP150) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SJ85 (CP200) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SJ85 (CP300) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SJ86 (CP200) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SJ86 (CP300) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SK82 (CP100) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SK82 (CP150) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SK85 (CP200) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SK85 (CP300) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SL82 (CP100) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SL82 (CP150) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SL86 (CP200) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SL86 (CP300) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SL87 (CP200) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SL87 (CP300) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SS85 (CP200) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SS85 (CP300) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7ST85 (CP200) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7ST85 (CP300) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7ST86 (CP300) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SX82 (CP150) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SX85 (CP300) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7SY82 (CP150) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7UM85 (CP300) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7UT82 (CP100) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7UT82 (CP150) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7UT85 (CP200) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7UT85 (CP300) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7UT86 (CP200) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7UT86 (CP300) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7UT87 (CP200) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7UT87 (CP300) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7VE85 (CP300) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7VK87 (CP200) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7VK87 (CP300) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 7VU85 (CP300) versions prior to V9.90, update to version V9.90 or later. For SIPROTEC 5 Compact 7SX800 (CP050) versions prior to V9.90, update to version V9.90 or later.
PT-2025-2974
6.5
2025-01-14
Siemens · Siprotec 5 7Sa87 · CVE-2024-53649
**Name of the Vulnerable Software and Affected Versions** SIPROTEC 5 6MD84 (CP300) versions prior to V9.80 SIPROTEC 5 6MD85 (CP300) versions 7.80 through 9.79 SIPROTEC 5 6MD86 (CP300) versions 7.80 through 9.79 SIPROTEC 5 6MD89 (CP300) versions 7.80 through 9.89 SIPROTEC 5 6MU85 (CP300) versions 7.80 through 9.79 SIPROTEC 5 7KE85 (CP300) versions 7.80 through 9.79 SIPROTEC 5 7SA82 (CP100) versions 7.80 and later SIPROTEC 5 7SA82 (CP150) versions prior to V9.80 SIPROTEC 5 7SA86 (CP300) versions 7.80 through 9.79 SIPROTEC 5 7SA87 (CP300) versions 7.80 through 9.79 SIPROTEC 5 7SD82 (CP100) versions 7.80 and later SIPROTEC 5 7SD82 (CP150) versions prior to V9.80 SIPROTEC 5 7SD86 (CP300) versions 7.80 through 9.79 SIPROTEC 5 7SD87 (CP300) versions 7.80 through 9.79 SIPROTEC 5 7SJ81 (CP100) versions 7.80 and later SIPROTEC 5 7SJ81 (CP150) versions prior to V9.80 SIPROTEC 5 7SJ82 (CP100) versions 7.80 and later SIPROTEC 5 7SJ82 (CP150) versions prior to V9.80 SIPROTEC 5 7SJ85 (CP300) versions 7.80 through 9.79 SIPROTEC 5 7SJ86 (CP300) versions 7.80 through 9.79 SIPROTEC 5 7SK82 (CP100) versions 7.80 and later SIPROTEC 5 7SK82 (CP150) versions prior to V9.80 SIPROTEC 5 7SK85 (CP300) versions 7.80 through 9.79 SIPROTEC 5 7SL82 (CP100) versions 7.80 and later SIPROTEC 5 7SL82 (CP150) versions prior to V9.80 SIPROTEC 5 7SL86 (CP300) versions 7.80 through 9.79 SIPROTEC 5 7SL87 (CP300) versions 7.80 through 9.79 SIPROTEC 5 7SS85 (CP300) versions 7.80 through 9.79 SIPROTEC 5 7ST85 (CP300) versions prior to V9.80 SIPROTEC 5 7ST86 (CP300) versions prior to V9.80 SIPROTEC 5 7SX82 (CP150) versions prior to V9.80 SIPROTEC 5 7SX85 (CP300) versions prior to V9.80 SIPROTEC 5 7SY82 (CP150) versions prior to V9.80 SIPROTEC 5 7UM85 (CP300) versions 7.80 through 9.79 SIPROTEC 5 7UT82 (CP100) versions 7.80 and later SIPROTEC 5 7UT82 (CP150) versions prior to V9.80 SIPROTEC 5 7UT85 (CP300) versions 7.80 through 9.79 SIPROTEC 5 7UT86 (CP300) versions 7.80 through 9.79 SIPROTEC 5 7UT87 (CP300) versions 7.80 through 9.79 SIPROTEC 5 7VE85 (CP300) versions 7.80 through 9.79 SIPROTEC 5 7VK87 (CP300) versions 7.80 through 9.79 SIPROTEC 5 7VU85 (CP300) versions prior to V9.80 SIPROTEC 5 Compact 7SX800 (CP050) versions prior to V9.80 **Description** The affected devices do not properly limit the path accessible via their webserver, allowing an authenticated remote attacker to read arbitrary files from the filesystem of affected devices. **Recommendations** For SIPROTEC 5 6MD84 (CP300) versions prior to V9.80, update to version V9.80 or later. For SIPROTEC 5 6MD85 (CP300) versions 7.80 through 9.79, update to version V9.80 or later. For SIPROTEC 5 6MD86 (CP300) versions 7.80 through 9.79, update to version V9.80 or later. For SIPROTEC 5 6MD89 (CP300) versions 7.80 through 9.89, update to version V9.90 or later. For SIPROTEC 5 6MU85 (CP300) versions 7.80 through 9.79, update to version V9.80 or later. For SIPROTEC 5 7KE85 (CP300) versions 7.80 through 9.79, update to version V9.80 or later. For SIPROTEC 5 7SA82 (CP100) versions 7.80 and later, restrict access to the webserver until a patch is available. For SIPROTEC 5 7SA82 (CP150) versions prior to V9.80, update to version V9.80 or later. For SIPROTEC 5 7SA86 (CP300) versions 7.80 through 9.79, update to version V9.80 or later. For SIPROTEC 5 7SA87 (CP300) versions 7.80 through 9.79, update to version V9.80 or later. For SIPROTEC 5 7SD82 (CP100) versions 7.80 and later, restrict access to the webserver until a patch is available. For SIPROTEC 5 7SD82 (CP150) versions prior to V9.80, update to version V9.80 or later. For SIPROTEC 5 7SD86 (CP300) versions 7.80 through 9.79, update to version V9.80 or later. For SIPROTEC 5 7SD87 (CP300) versions 7.80 through 9.79, update to version V9.80 or later. For SIPROTEC 5 7SJ81 (CP100) versions 7.80 and later, restrict access to the webserver until a patch is available. For SIPROTEC 5 7SJ81 (CP150) versions prior to V9.80, update to version V9.80 or later. For SIPROTEC 5 7SJ82 (CP100) versions 7.80 and later, restrict access to the webserver until a patch is available. For SIPROTEC 5 7SJ82 (CP150) versions prior to V9.80, update to version V9.80 or later. For SIPROTEC 5 7SJ85 (CP300) versions 7.80 through 9.79, update to version V9.80 or later. For SIPROTEC 5 7SJ86 (CP300) versions 7.80 through 9.79, update to version V9.80 or later. For SIPROTEC 5 7SK82 (CP100) versions 7.80 and later, restrict access to the webserver until a patch is available. For SIPROTEC 5 7SK82 (CP150) versions prior to V9.80, update to version V9.80 or later. For SIPROTEC 5 7SK85 (CP300) versions 7.80 through 9.79, update to version V9.80 or later. For SIPROTEC 5 7SL82 (CP100) versions 7.80 and later, restrict access to the webserver until a patch is available. For SIPROTEC 5 7SL82 (CP150) versions prior to V9.80, update to version V9.80 or later. For SIPROTEC 5 7SL86 (CP300) versions 7.80 through 9.79, update to version V9.80 or later. For SIPROTEC 5 7SL87 (CP300) versions 7.80 through 9.79, update to version V9.80 or later. For SIPROTEC 5 7SS85 (CP300) versions 7.80 through 9.79, update to version V9.80 or later. For SIPROTEC 5 7ST85 (CP300) versions prior to V9.80, update to version V9.80 or later. For SIPROTEC 5 7ST86 (CP300) versions prior to V9.80, update to version V9.80 or later. For SIPROTEC 5 7SX82 (CP150) versions prior to V9.80, update to version V9.80 or later. For SIPROTEC 5 7SX85 (CP300) versions prior to V9.80, update to version V9.80 or later. For SIPROTEC 5 7SY82 (CP150) versions prior to V9.80, update to version V9.80 or later. For SIPROTEC 5 7UM85 (CP300) versions 7.80 through 9.79, update to version V9.80 or later. For SIPROTEC 5 7UT82 (CP100) versions 7.80 and later, restrict access to the webserver until a patch is available. For SIPROTEC 5 7UT82 (CP150) versions prior to V9.80, update to version V9.80 or later. For SIPROTEC 5 7UT85 (CP300) versions 7.80 through 9.79, update to version V9.80 or later. For SIPROTEC 5 7UT86 (CP300) versions 7.80 through 9.79, update to version V9.80 or later. For SIPROTEC 5 7UT87 (CP300) versions 7.80 through 9.79, update to version V9.80 or later. For SIPROTEC 5 7VE85 (CP300) versions 7.80 through 9.79, update to version V9.80 or later. For SIPROTEC 5 7VK87 (CP300) versions 7.80 through 9.79, update to version V9.80 or later. For SIPROTEC 5 7VU85 (CP300) versions prior to V9.80, update to version V9.80 or later. For SIPROTEC 5 Compact 7SX800 (CP050) versions prior to V9.80, update to version V9.80 or later.