PT-2021-20292 · Siemens · Simatic Cp 1543Sp-1+1
Published
2021-09-14
·
Updated
2022-12-08
·
CVE-2021-33716
CVSS v3.1
6.5
Medium
| Vector | AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions:
SIMATIC CP 1543-1 (incl. SIPLUS variants) versions prior to V3.0
SIMATIC CP 1545-1 versions prior to V1.1
Description:
A vulnerability has been identified that allows an attacker with access to the subnet of the affected device to retrieve sensitive information stored in cleartext.
Recommendations:
For SIMATIC CP 1543-1 (incl. SIPLUS variants) versions prior to V3.0, update to version V3.0 or later.
For SIMATIC CP 1545-1 versions prior to V1.1, update to version V1.1 or later.
Fix
Cleartext Storage of Sensitive Information
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Simatic Cp 1543Sp-1
Simatic Cp 1545-1