CVE-2021-37185
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
09/02/2022
Last modified:
11/04/2023
Description
A vulnerability has been identified in SIMATIC Drive Controller family (All versions >= V2.9.2 = V21.9 = V4.5.0 = V2.9.2 = V21.9 = V4.0
Impact
Base Score 3.x
7.50
Severity 3.x
HIGH
Base Score 2.0
7.10
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:siemens:simatic_drive_controller_cpu_1504d_tf_firmware:*:*:*:*:*:*:*:* | 2.9.4 (excluding) | |
| cpe:2.3:h:siemens:simatic_drive_controller_cpu_1504d_tf:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:siemens:simatic_drive_controller_cpu_1507d_tf_firmware:*:*:*:*:*:*:*:* | 2.9.4 (excluding) | |
| cpe:2.3:h:siemens:simatic_drive_controller_cpu_1507d_tf:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:siemens:simatic_et_200sp_open_controller_cpu_1515sp_pc2_firmware:*:*:*:*:*:*:*:* | ||
| cpe:2.3:h:siemens:simatic_et_200sp_open_controller_cpu_1515sp_pc2:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:siemens:simatic_s7-plcsim_advanced_firmware:*:*:*:*:*:*:*:* | 4.0 (excluding) | |
| cpe:2.3:o:siemens:simatic_s7-plcsim_advanced_firmware:4.0:-:*:*:*:*:*:* | ||
| cpe:2.3:h:siemens:simatic_s7-plcsim_advanced:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:siemens:tim_1531_irc_firmware:*:*:*:*:*:*:*:* | 2.2 (including) | |
| cpe:2.3:h:siemens:tim_1531_irc:-:*:*:*:*:*:*:* | ||
| cpe:2.3:a:siemens:simatic_s7-1500_software_controller:*:*:*:*:*:*:*:* | ||
| cpe:2.3:o:siemens:simatic_s7-1200_cpu_1211c_firmware:*:*:*:*:*:*:*:* | 4.5.0 (including) | 4.5.2 (excluding) |
| cpe:2.3:h:siemens:simatic_s7-1200_cpu_1211c:-:*:*:*:*:*:*:* | ||
| cpe:2.3:o:siemens:simatic_s7-1200_cpu_1212c_firmware:*:*:*:*:*:*:*:* | 4.5.0 (including) | 4.5.2 (excluding) |
To consult the complete list of CPE names with products and versions, see this page



