CVE-2024-50310 PUBLISHED CVSS 7.5 HIGH

A vulnerability has been identified in SIMATIC CP 1543-1 V4.0 (6GK7543-1AX10-0XE0) (All versions >= V4.0.44 < V4.0.50). Affected devices do not properly handle authorization. This could allow an unauthenticated remote attacker to gain access to the filesystem.

EPSS 0.41% · 61.3th percentile

Risk Scores

CVSS v3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N/E:P/RL:O/RC:C
EPSS Score
0.41%
61.3th percentile

Affected Products

VendorProductVersions
siemenssimatic_cp_1543-1_firmware4.0.44
siemenssimatic_cp_1543-1V4.0.44
SiemensSIMATIC CP 1543-1 V4.0V4.0.44

Timeline

References

Open in Interactive Console →