CVE-2020-7592
A vulnerability has been identified in SIMATIC HMI Basic Panels 1st Generation (incl. SIPLUS variants) (All versions), SIMATIC HMI Basic Panels 2nd Generation (incl. SIPLUS variants) (All versions), SIMATIC HMI Comfort Panels (incl. SIPLUS variants) (All versions), SIMATIC HMI KTP700F Mobile Arctic (All versions), SIMATIC HMI Mobile Panels 2nd Generation (All versions), SIMATIC WinCC Runtime Advanced (All versions). Unencrypted communication between the configuration software and the respective device could allow an attacker to capture potential plain text communication and have access to sensitive information.
EPSS 0.03% · 10.2th percentile
Risk Scores
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Siemens AG | SIMATIC HMI Mobile Panels 2nd Generation | All versions |
| Siemens AG | SIMATIC HMI Basic Panels 1st Generation (incl. SIPLUS variants) | * |
| Siemens AG | SIMATIC HMI KTP700F Mobile Arctic | * |
| siemens | simatic_hmi_comfort_panels_firmware | |
| Siemens AG | SIMATIC HMI Basic Panels 2nd Generation (incl. SIPLUS variants) | All versions |
| siemens | simatic_wincc_runtime_advanced | |
| siemens | simatic_hmi_mobile_panels_2nd_generation_firmware | |
| siemens | simatic_hmi_basic_panels_2nd_generation | |
| Siemens AG | SIMATIC WinCC Runtime Advanced | All versions |
| siemens | simatic_hmi_basic_panels_1st_generation | |
| Siemens AG | SIMATIC HMI Comfort Panels (incl. SIPLUS variants) | All versions |
| siemens | simatic_hmi_ktp700f_mobile_arctic_firmware |
Exploit Intelligence
Timeline
- Jul 14, 2020 CVE Published
- Apr 14, 2021 EPSS Score
- Jun 23, 2021 EPSS Score
- Aug 24, 2021 EPSS Score
- Oct 26, 2021 EPSS Score
- Jan 6, 2022 EPSS Score
- Feb 4, 2022 EPSS Score
- Feb 28, 2022 EPSS Score
- Apr 1, 2022 EPSS Score
- May 1, 2022 EPSS Score
- Jul 3, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
References
- https://cert-portal.siemens.com/productcert/pdf/ssa-364335.pdf url
- https://us-cert.cisa.gov/ics/advisories/icsa-20-196-04 url
- https://nvd.nist.gov/vuln/detail/CVE-2020-7592 advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-589181.pdf advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-631949.pdf advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-573753.pdf advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-604937.pdf advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-508982.pdf advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-841348.pdf advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-305120.pdf advisory