A vulnerability has been identified in SIMATIC Drive Controller family (All versions < V2.9.2), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) (All versions < V21.9), SIMATIC S7 PLCSIM Advanced (All versions > V2 < V4), SIMATIC S7-1200 CPU family (incl. SIPLUS variants) (Version V4.4), SIMATIC S7-1500 CPU family (incl. related ET200 CPUs and SIPLUS variants) (All versions > V2.5 < V2.9.2), SIMATIC S7-1500 Software Controller (All versions > V2.5 < V21.9), TIM 1531 IRC (incl. SIPLUS NET variants) (Version V2.1). Due to an incorrect authorization check in the affected component, an attacker could extract information about access protected PLC program variables over port 102/tcp from an affected device when reading multiple attributes at once.

Project Subscriptions

Vendors Products
Siemens Subscribe
Cpu1510sp F-1 Subscribe
Cpu1510sp F-1 Firmware Subscribe
Cpu 1211c Subscribe
Cpu 1211c Firmware Subscribe
Cpu 1212c Subscribe
Cpu 1212c Firmware Subscribe
Cpu 1212fc Subscribe
Cpu 1212fc Firmware Subscribe
Cpu 1214c Subscribe
Cpu 1214c Firmware Subscribe
Cpu 1214fc Subscribe
Cpu 1214fc Firmware Subscribe
Cpu 1215c Subscribe
Cpu 1215c Firmware Subscribe
Cpu 1215fc Subscribe
Cpu 1215fc Firmware Subscribe
Cpu 1217c Subscribe
Cpu 1217c Firmware Subscribe
Cpu 1504d Tf Subscribe
Cpu 1504d Tf Firmware Subscribe
Cpu 1507d Tf Subscribe
Cpu 1507d Tf Firmware Subscribe
Cpu 1510sp-1pn Subscribe
Cpu 1510sp-1pn Firmware Subscribe
Cpu 1511-1pn Subscribe
Cpu 1511-1pn Firmware Subscribe
Cpu 1511c-1 Pn Subscribe
Cpu 1511c-1 Pn Firmware Subscribe
Cpu 1511f-1pn Subscribe
Cpu 1511f-1pn Firmware Subscribe
Cpu 1511t-1pn Subscribe
Cpu 1511t-1pn Firmware Subscribe
Cpu 1511tf-1pn Subscribe
Cpu 1511tf-1pn Firmware Subscribe
Cpu 1512c-1 Pn Subscribe
Cpu 1512c-1 Pn Firmware Subscribe
Cpu 1512sp-1 Pn Subscribe
Cpu 1512sp-1 Pn Firmware Subscribe
Cpu 1512sp F-1 Pn Subscribe
Cpu 1512sp F-1 Pn Firmware Subscribe
Cpu 1513-1 Pn Subscribe
Cpu 1513-1 Pn Firmware Subscribe
Cpu 1513f-1 Pn Subscribe
Cpu 1513f-1 Pn Firmware Subscribe
Cpu 1513pro F-2 Pn Subscribe
Cpu 1513pro F-2 Pn Firmware Subscribe
Cpu 1513r-1 Pn Subscribe
Cpu 1513r-1 Pn Firmware Subscribe
Cpu 1515-2 Subscribe
Cpu 1515-2 Firmware Subscribe
Cpu 1515f-2 Subscribe
Cpu 1515f-2 Firmware Subscribe
Cpu 1515r-2 Pn Subscribe
Cpu 1515r-2 Pn Firmware Subscribe
Cpu 1515sp Pc2 Tf Subscribe
Cpu 1515sp Pc2 Tf Firmware Subscribe
Cpu 1515t-2 Pn Subscribe
Cpu 1515t-2 Pn Firmware Subscribe
Cpu 1515tf-2 Pn Subscribe
Cpu 1515tf-2 Pn Firmware Subscribe
Cpu 1516-3 Subscribe
Cpu 1516-3 Firmware Subscribe
Cpu 1516f-3 Subscribe
Cpu 1516f-3 Firmware Subscribe
Cpu 1516pro-2 Pn Subscribe
Cpu 1516pro-2 Pn Firmware Subscribe
Cpu 1516pro F-2 Pn Subscribe
Cpu 1516pro F-2 Pn Firmware Subscribe
Cpu 1516t-3 Pn\/dp Subscribe
Cpu 1516t-3 Pn\/dp Firmware Subscribe
Cpu 1516tf-3 Pn\/dp Subscribe
Cpu 1516tf-3 Pn\/dp Firmware Subscribe
Cpu 1517-3 Pn\/dp Subscribe
Cpu 1517-3 Pn\/dp Firmware Subscribe
Cpu 1517f-3 Pn\/dp Subscribe
Cpu 1517f-3 Pn\/dp Firmware Subscribe
Cpu 1517t-3 Pn\/dp Subscribe
Cpu 1517t-3 Pn\/dp Firmware Subscribe
Cpu 1517tf-3 Pn\/dp Subscribe
Cpu 1517tf-3 Pn\/dp Firmware Subscribe
Cpu 1518-4 Pn\/dp Subscribe
Cpu 1518-4 Pn\/dp Firmware Subscribe
Cpu 1518f-4 Pn\/dp Subscribe
Cpu 1518f-4 Pn\/dp Firmware Subscribe
Simatic S7-1500 Software Controller Subscribe
Simatic S7 Plcsim Advanced Subscribe
Simatic S7 Plcsim Advanced Firmware Subscribe
Siplus Cpu-1516f-3 Pn\/dp Subscribe
Siplus Cpu-1516f-3 Pn\/dp Firmware Subscribe
Siplus Cpu 1510sp F-1pn Subscribe
Siplus Cpu 1510sp F-1pn Firmware Subscribe
Siplus Cpu 1511-1 Pn Subscribe
Siplus Cpu 1511-1 Pn Firmware Subscribe
Siplus Cpu 1511f-1 Pn Subscribe
Siplus Cpu 1511f-1 Pn Firmware Subscribe
Siplus Cpu 1512sp-1 Pn Subscribe
Siplus Cpu 1512sp-1 Pn Firmware Subscribe
Siplus Cpu 1512sp F-1pn Subscribe
Siplus Cpu 1512sp F-1pn Firmware Subscribe
Siplus Cpu 1513-1 Pn Subscribe
Siplus Cpu 1513-1 Pn Firmware Subscribe
Siplus Cpu 1513f-1 Pn Subscribe
Siplus Cpu 1513f-1 Pn Firmware Subscribe
Siplus Cpu 1516-3 Pn\/dp Subscribe
Siplus Cpu 1516-3 Pn\/dp Firmware Subscribe
Siplus Cpu 1518-4 Pn\/dp Subscribe
Siplus Cpu 1518-4 Pn\/dp Firmware Subscribe
Siplus Cpu 1518f-4 Pn\/dp Subscribe
Siplus Cpu 1518f-4 Pn\/dp Firmware Subscribe
Tim 1531 Irc Subscribe
Tim 1531 Irc Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2020-20856 A vulnerability has been identified in SIMATIC Drive Controller family (All versions < V2.9.2), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) (All versions < V21.9), SIMATIC S7 PLCSIM Advanced (All versions > V2 < V4), SIMATIC S7-1200 CPU family (incl. SIPLUS variants) (Version V4.4), SIMATIC S7-1500 CPU family (incl. related ET200 CPUs and SIPLUS variants) (All versions > V2.5 < V2.9.2), SIMATIC S7-1500 Software Controller (All versions > V2.5 < V21.9), TIM 1531 IRC (incl. SIPLUS NET variants) (Version V2.1). Due to an incorrect authorization check in the affected component, an attacker could extract information about access protected PLC program variables over port 102/tcp from an affected device when reading multiple attributes at once.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: siemens

Published:

Updated: 2024-08-04T16:33:59.119Z

Reserved: 2020-11-10T00:00:00

Link: CVE-2020-28397

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-08-10T11:15:07.423

Modified: 2024-11-21T05:22:43.247

Link: CVE-2020-28397

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses