Description
A vulnerability has been identified in SIMATIC Reader RF610R CMIIT (6GT2811-6BC10-2AA0) (All versions < V4.2), SIMATIC Reader RF610R ETSI (6GT2811-6BC10-0AA0) (All versions < V4.2), SIMATIC Reader RF610R FCC (6GT2811-6BC10-1AA0) (All versions < V4.2), SIMATIC Reader RF615R CMIIT (6GT2811-6CC10-2AA0) (All versions < V4.2), SIMATIC Reader RF615R ETSI (6GT2811-6CC10-0AA0) (All versions < V4.2), SIMATIC Reader RF615R FCC (6GT2811-6CC10-1AA0) (All versions < V4.2), SIMATIC Reader RF650R ARIB (6GT2811-6AB20-4AA0) (All versions < V4.2), SIMATIC Reader RF650R CMIIT (6GT2811-6AB20-2AA0) (All versions < V4.2), SIMATIC Reader RF650R ETSI (6GT2811-6AB20-0AA0) (All versions < V4.2), SIMATIC Reader RF650R FCC (6GT2811-6AB20-1AA0) (All versions < V4.2), SIMATIC Reader RF680R ARIB (6GT2811-6AA10-4AA0) (All versions < V4.2), SIMATIC Reader RF680R CMIIT (6GT2811-6AA10-2AA0) (All versions < V4.2), SIMATIC Reader RF680R ETSI (6GT2811-6AA10-0AA0) (All versions < V4.2), SIMATIC Reader RF680R FCC (6GT2811-6AA10-1AA0) (All versions < V4.2), SIMATIC Reader RF685R ARIB (6GT2811-6CA10-4AA0) (All versions < V4.2), SIMATIC Reader RF685R CMIIT (6GT2811-6CA10-2AA0) (All versions < V4.2), SIMATIC Reader RF685R ETSI (6GT2811-6CA10-0AA0) (All versions < V4.2), SIMATIC Reader RF685R FCC (6GT2811-6CA10-1AA0) (All versions < V4.2), SIMATIC RF1140R (6GT2831-6CB00) (All versions < V1.1), SIMATIC RF1170R (6GT2831-6BB00) (All versions < V1.1), SIMATIC RF166C (6GT2002-0EE20) (All versions < V2.2), SIMATIC RF185C (6GT2002-0JE10) (All versions < V2.2), SIMATIC RF186C (6GT2002-0JE20) (All versions < V2.2), SIMATIC RF186CI (6GT2002-0JE50) (All versions < V2.2), SIMATIC RF188C (6GT2002-0JE40) (All versions < V2.2), SIMATIC RF188CI (6GT2002-0JE60) (All versions < V2.2), SIMATIC RF360R (6GT2801-5BA30) (All versions < V2.2). The service log files of the affected application can be accessed without proper authentication. This could allow an unauthenticated attacker to get access to sensitive information.
Published: 2024-09-10
Score: 6 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2024-36943 A vulnerability has been identified in SIMATIC Reader RF610R CMIIT (6GT2811-6BC10-2AA0) (All versions < V4.2), SIMATIC Reader RF610R ETSI (6GT2811-6BC10-0AA0) (All versions < V4.2), SIMATIC Reader RF610R FCC (6GT2811-6BC10-1AA0) (All versions < V4.2), SIMATIC Reader RF615R CMIIT (6GT2811-6CC10-2AA0) (All versions < V4.2), SIMATIC Reader RF615R ETSI (6GT2811-6CC10-0AA0) (All versions < V4.2), SIMATIC Reader RF615R FCC (6GT2811-6CC10-1AA0) (All versions < V4.2), SIMATIC Reader RF650R ARIB (6GT2811-6AB20-4AA0) (All versions < V4.2), SIMATIC Reader RF650R CMIIT (6GT2811-6AB20-2AA0) (All versions < V4.2), SIMATIC Reader RF650R ETSI (6GT2811-6AB20-0AA0) (All versions < V4.2), SIMATIC Reader RF650R FCC (6GT2811-6AB20-1AA0) (All versions < V4.2), SIMATIC Reader RF680R ARIB (6GT2811-6AA10-4AA0) (All versions < V4.2), SIMATIC Reader RF680R CMIIT (6GT2811-6AA10-2AA0) (All versions < V4.2), SIMATIC Reader RF680R ETSI (6GT2811-6AA10-0AA0) (All versions < V4.2), SIMATIC Reader RF680R FCC (6GT2811-6AA10-1AA0) (All versions < V4.2), SIMATIC Reader RF685R ARIB (6GT2811-6CA10-4AA0) (All versions < V4.2), SIMATIC Reader RF685R CMIIT (6GT2811-6CA10-2AA0) (All versions < V4.2), SIMATIC Reader RF685R ETSI (6GT2811-6CA10-0AA0) (All versions < V4.2), SIMATIC Reader RF685R FCC (6GT2811-6CA10-1AA0) (All versions < V4.2), SIMATIC RF1140R (6GT2831-6CB00) (All versions < V1.1), SIMATIC RF1170R (6GT2831-6BB00) (All versions < V1.1), SIMATIC RF166C (6GT2002-0EE20) (All versions < V2.2), SIMATIC RF185C (6GT2002-0JE10) (All versions < V2.2), SIMATIC RF186C (6GT2002-0JE20) (All versions < V2.2), SIMATIC RF186CI (6GT2002-0JE50) (All versions < V2.2), SIMATIC RF188C (6GT2002-0JE40) (All versions < V2.2), SIMATIC RF188CI (6GT2002-0JE60) (All versions < V2.2), SIMATIC RF360R (6GT2801-5BA30) (All versions < V2.2). The service log files of the affected application can be accessed without proper authentication. This could allow an unauthenticated attacker to get access to sensitive information.
History

Wed, 18 Sep 2024 15:45:00 +0000

Type Values Removed Values Added
First Time appeared Siemens
Siemens simatic Reader Rf610r Cmiit
Siemens simatic Reader Rf610r Cmiit Firmware
Siemens simatic Reader Rf610r Etsi
Siemens simatic Reader Rf610r Etsi Firmware
Siemens simatic Reader Rf610r Fcc
Siemens simatic Reader Rf610r Fcc Firmware
Siemens simatic Reader Rf615r Cmiit
Siemens simatic Reader Rf615r Cmiit Firmware
Siemens simatic Reader Rf615r Etsi
Siemens simatic Reader Rf615r Etsi Firmware
Siemens simatic Reader Rf615r Fcc
Siemens simatic Reader Rf615r Fcc Firmware
Siemens simatic Reader Rf650r Arib
Siemens simatic Reader Rf650r Arib Firmware
Siemens simatic Reader Rf650r Cmiit
Siemens simatic Reader Rf650r Cmiit Firmware
Siemens simatic Reader Rf650r Etsi
Siemens simatic Reader Rf650r Etsi Firmware
Siemens simatic Reader Rf650r Fcc
Siemens simatic Reader Rf650r Fcc Firmware
Siemens simatic Reader Rf680r Arib
Siemens simatic Reader Rf680r Arib Firmware
Siemens simatic Reader Rf680r Cmiit
Siemens simatic Reader Rf680r Cmiit Firmware
Siemens simatic Reader Rf680r Etsi
Siemens simatic Reader Rf680r Etsi Firmware
Siemens simatic Reader Rf680r Fcc
Siemens simatic Reader Rf680r Fcc Firmware
Siemens simatic Reader Rf685r Arib
Siemens simatic Reader Rf685r Arib Firmware
Siemens simatic Reader Rf685r Cmiit
Siemens simatic Reader Rf685r Cmiit Firmware
Siemens simatic Reader Rf685r Etsi
Siemens simatic Reader Rf685r Etsi Firmware
Siemens simatic Reader Rf685r Fcc
Siemens simatic Reader Rf685r Fcc Firmware
Siemens simatic Rf1140r
Siemens simatic Rf1140r Firmware
Siemens simatic Rf1170r
Siemens simatic Rf1170r Firmware
Siemens simatic Rf166c
Siemens simatic Rf166c Firmware
Siemens simatic Rf185c
Siemens simatic Rf185c Firmware
Siemens simatic Rf186c
Siemens simatic Rf186c Firmware
Siemens simatic Rf186ci
Siemens simatic Rf186ci Firmware
Siemens simatic Rf188c
Siemens simatic Rf188c Firmware
Siemens simatic Rf188ci
Siemens simatic Rf188ci Firmware
Siemens simatic Rf360r
Siemens simatic Rf360r Firmware
Weaknesses CWE-306
CPEs cpe:2.3:h:siemens:simatic_reader_rf610r_cmiit:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_reader_rf610r_etsi:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_reader_rf610r_fcc:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_reader_rf615r_cmiit:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_reader_rf615r_etsi:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_reader_rf615r_fcc:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_reader_rf650r_arib:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_reader_rf650r_cmiit:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_reader_rf650r_etsi:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_reader_rf650r_fcc:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_reader_rf680r_arib:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_reader_rf680r_cmiit:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_reader_rf680r_etsi:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_reader_rf680r_fcc:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_reader_rf685r_arib:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_reader_rf685r_cmiit:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_reader_rf685r_etsi:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_reader_rf685r_fcc:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_rf1140r:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_rf1170r:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_rf166c:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_rf185c:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_rf186c:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_rf186ci:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_rf188c:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_rf188ci:-:*:*:*:*:*:*:*
cpe:2.3:h:siemens:simatic_rf360r:-:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_reader_rf610r_cmiit_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_reader_rf610r_etsi_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_reader_rf610r_fcc_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_reader_rf615r_cmiit_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_reader_rf615r_etsi_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_reader_rf615r_fcc_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_reader_rf650r_arib_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_reader_rf650r_cmiit_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_reader_rf650r_etsi_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_reader_rf650r_fcc_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_reader_rf680r_arib_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_reader_rf680r_cmiit_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_reader_rf680r_etsi_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_reader_rf680r_fcc_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_reader_rf685r_arib_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_reader_rf685r_cmiit_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_reader_rf685r_etsi_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_reader_rf685r_fcc_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_rf1140r_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_rf1170r_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_rf166c_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_rf185c_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_rf186c_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_rf186ci_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_rf188c_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_rf188ci_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:siemens:simatic_rf360r_firmware:*:*:*:*:*:*:*:*
Vendors & Products Siemens
Siemens simatic Reader Rf610r Cmiit
Siemens simatic Reader Rf610r Cmiit Firmware
Siemens simatic Reader Rf610r Etsi
Siemens simatic Reader Rf610r Etsi Firmware
Siemens simatic Reader Rf610r Fcc
Siemens simatic Reader Rf610r Fcc Firmware
Siemens simatic Reader Rf615r Cmiit
Siemens simatic Reader Rf615r Cmiit Firmware
Siemens simatic Reader Rf615r Etsi
Siemens simatic Reader Rf615r Etsi Firmware
Siemens simatic Reader Rf615r Fcc
Siemens simatic Reader Rf615r Fcc Firmware
Siemens simatic Reader Rf650r Arib
Siemens simatic Reader Rf650r Arib Firmware
Siemens simatic Reader Rf650r Cmiit
Siemens simatic Reader Rf650r Cmiit Firmware
Siemens simatic Reader Rf650r Etsi
Siemens simatic Reader Rf650r Etsi Firmware
Siemens simatic Reader Rf650r Fcc
Siemens simatic Reader Rf650r Fcc Firmware
Siemens simatic Reader Rf680r Arib
Siemens simatic Reader Rf680r Arib Firmware
Siemens simatic Reader Rf680r Cmiit
Siemens simatic Reader Rf680r Cmiit Firmware
Siemens simatic Reader Rf680r Etsi
Siemens simatic Reader Rf680r Etsi Firmware
Siemens simatic Reader Rf680r Fcc
Siemens simatic Reader Rf680r Fcc Firmware
Siemens simatic Reader Rf685r Arib
Siemens simatic Reader Rf685r Arib Firmware
Siemens simatic Reader Rf685r Cmiit
Siemens simatic Reader Rf685r Cmiit Firmware
Siemens simatic Reader Rf685r Etsi
Siemens simatic Reader Rf685r Etsi Firmware
Siemens simatic Reader Rf685r Fcc
Siemens simatic Reader Rf685r Fcc Firmware
Siemens simatic Rf1140r
Siemens simatic Rf1140r Firmware
Siemens simatic Rf1170r
Siemens simatic Rf1170r Firmware
Siemens simatic Rf166c
Siemens simatic Rf166c Firmware
Siemens simatic Rf185c
Siemens simatic Rf185c Firmware
Siemens simatic Rf186c
Siemens simatic Rf186c Firmware
Siemens simatic Rf186ci
Siemens simatic Rf186ci Firmware
Siemens simatic Rf188c
Siemens simatic Rf188c Firmware
Siemens simatic Rf188ci
Siemens simatic Rf188ci Firmware
Siemens simatic Rf360r
Siemens simatic Rf360r Firmware

Tue, 10 Sep 2024 15:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 10 Sep 2024 09:45:00 +0000

Type Values Removed Values Added
Description A vulnerability has been identified in SIMATIC Reader RF610R CMIIT (6GT2811-6BC10-2AA0) (All versions < V4.2), SIMATIC Reader RF610R ETSI (6GT2811-6BC10-0AA0) (All versions < V4.2), SIMATIC Reader RF610R FCC (6GT2811-6BC10-1AA0) (All versions < V4.2), SIMATIC Reader RF615R CMIIT (6GT2811-6CC10-2AA0) (All versions < V4.2), SIMATIC Reader RF615R ETSI (6GT2811-6CC10-0AA0) (All versions < V4.2), SIMATIC Reader RF615R FCC (6GT2811-6CC10-1AA0) (All versions < V4.2), SIMATIC Reader RF650R ARIB (6GT2811-6AB20-4AA0) (All versions < V4.2), SIMATIC Reader RF650R CMIIT (6GT2811-6AB20-2AA0) (All versions < V4.2), SIMATIC Reader RF650R ETSI (6GT2811-6AB20-0AA0) (All versions < V4.2), SIMATIC Reader RF650R FCC (6GT2811-6AB20-1AA0) (All versions < V4.2), SIMATIC Reader RF680R ARIB (6GT2811-6AA10-4AA0) (All versions < V4.2), SIMATIC Reader RF680R CMIIT (6GT2811-6AA10-2AA0) (All versions < V4.2), SIMATIC Reader RF680R ETSI (6GT2811-6AA10-0AA0) (All versions < V4.2), SIMATIC Reader RF680R FCC (6GT2811-6AA10-1AA0) (All versions < V4.2), SIMATIC Reader RF685R ARIB (6GT2811-6CA10-4AA0) (All versions < V4.2), SIMATIC Reader RF685R CMIIT (6GT2811-6CA10-2AA0) (All versions < V4.2), SIMATIC Reader RF685R ETSI (6GT2811-6CA10-0AA0) (All versions < V4.2), SIMATIC Reader RF685R FCC (6GT2811-6CA10-1AA0) (All versions < V4.2), SIMATIC RF1140R (6GT2831-6CB00) (All versions < V1.1), SIMATIC RF1170R (6GT2831-6BB00) (All versions < V1.1), SIMATIC RF166C (6GT2002-0EE20) (All versions < V2.2), SIMATIC RF185C (6GT2002-0JE10) (All versions < V2.2), SIMATIC RF186C (6GT2002-0JE20) (All versions < V2.2), SIMATIC RF186CI (6GT2002-0JE50) (All versions < V2.2), SIMATIC RF188C (6GT2002-0JE40) (All versions < V2.2), SIMATIC RF188CI (6GT2002-0JE60) (All versions < V2.2), SIMATIC RF360R (6GT2801-5BA30) (All versions < V2.2). The service log files of the affected application can be accessed without proper authentication. This could allow an unauthenticated attacker to get access to sensitive information.
Weaknesses CWE-200
References
Metrics cvssV3_1

{'score': 5.3, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N'}

cvssV4_0

{'score': 6, 'vector': 'CVSS:4.0/AV:N/AC:H/AT:N/PR:N/UI:P/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N'}


Subscriptions

Siemens Simatic Reader Rf610r Cmiit Simatic Reader Rf610r Cmiit Firmware Simatic Reader Rf610r Etsi Simatic Reader Rf610r Etsi Firmware Simatic Reader Rf610r Fcc Simatic Reader Rf610r Fcc Firmware Simatic Reader Rf615r Cmiit Simatic Reader Rf615r Cmiit Firmware Simatic Reader Rf615r Etsi Simatic Reader Rf615r Etsi Firmware Simatic Reader Rf615r Fcc Simatic Reader Rf615r Fcc Firmware Simatic Reader Rf650r Arib Simatic Reader Rf650r Arib Firmware Simatic Reader Rf650r Cmiit Simatic Reader Rf650r Cmiit Firmware Simatic Reader Rf650r Etsi Simatic Reader Rf650r Etsi Firmware Simatic Reader Rf650r Fcc Simatic Reader Rf650r Fcc Firmware Simatic Reader Rf680r Arib Simatic Reader Rf680r Arib Firmware Simatic Reader Rf680r Cmiit Simatic Reader Rf680r Cmiit Firmware Simatic Reader Rf680r Etsi Simatic Reader Rf680r Etsi Firmware Simatic Reader Rf680r Fcc Simatic Reader Rf680r Fcc Firmware Simatic Reader Rf685r Arib Simatic Reader Rf685r Arib Firmware Simatic Reader Rf685r Cmiit Simatic Reader Rf685r Cmiit Firmware Simatic Reader Rf685r Etsi Simatic Reader Rf685r Etsi Firmware Simatic Reader Rf685r Fcc Simatic Reader Rf685r Fcc Firmware Simatic Rf1140r Simatic Rf1140r Firmware Simatic Rf1170r Simatic Rf1170r Firmware Simatic Rf166c Simatic Rf166c Firmware Simatic Rf185c Simatic Rf185c Firmware Simatic Rf186c Simatic Rf186c Firmware Simatic Rf186ci Simatic Rf186ci Firmware Simatic Rf188c Simatic Rf188c Firmware Simatic Rf188ci Simatic Rf188ci Firmware Simatic Rf360r Simatic Rf360r Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: siemens

Published:

Updated: 2024-09-10T15:09:35.340Z

Reserved: 2024-06-11T08:32:52.183Z

Link: CVE-2024-37991

cve-icon Vulnrichment

Updated: 2024-09-10T15:09:30.450Z

cve-icon NVD

Status : Analyzed

Published: 2024-09-10T10:15:10.600

Modified: 2024-09-18T15:29:44.390

Link: CVE-2024-37991

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses