PT-2021-20292 · Siemens · Simatic Cp 1543Sp-1+1

Published

2021-09-14

·

Updated

2022-12-08

·

CVE-2021-33716

CVSS v3.1

6.5

Medium

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions: SIMATIC CP 1543-1 (incl. SIPLUS variants) versions prior to V3.0 SIMATIC CP 1545-1 versions prior to V1.1
Description: A vulnerability has been identified that allows an attacker with access to the subnet of the affected device to retrieve sensitive information stored in cleartext.
Recommendations: For SIMATIC CP 1543-1 (incl. SIPLUS variants) versions prior to V3.0, update to version V3.0 or later. For SIMATIC CP 1545-1 versions prior to V1.1, update to version V1.1 or later.

Fix

Cleartext Storage of Sensitive Information

Weakness Enumeration

Related Identifiers

CVE-2021-33716

Affected Products

Simatic Cp 1543Sp-1
Simatic Cp 1545-1