PT-2021-20292 · Siemens · Simatic Cp 1543Sp-1+1

CVE-2021-33716

·

Published

2021-09-14

·

Updated

2022-12-08

CVSS v3.1

6.5

Medium

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions: SIMATIC CP 1543-1 (incl. SIPLUS variants) versions prior to V3.0 SIMATIC CP 1545-1 versions prior to V1.1
Description: A vulnerability has been identified that allows an attacker with access to the subnet of the affected device to retrieve sensitive information stored in cleartext.
Recommendations: For SIMATIC CP 1543-1 (incl. SIPLUS variants) versions prior to V3.0, update to version V3.0 or later. For SIMATIC CP 1545-1 versions prior to V1.1, update to version V1.1 or later.

Fix

Cleartext Storage of Sensitive Information

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-33716

Affected Products

Simatic Cp 1543Sp-1
Simatic Cp 1545-1