SSA-500748 PUBLISHED CVSS 7.5 HIGH

The latest update for SIPROTEC 5 family devices fixes a vulnerability in the web interface which could allow unauthorized users to cause a Denial-of-Service situation by sending maliciously crafted web requests. Siemens has released an update for the SIPROTEC 5 and recommends to update to the latest version.

Risk Scores

CVSS v3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:F/RL:O/RC:C

Affected Products

VendorProductVersions
SIPROTEC 5 relays with CPU variants CP050
SIPROTEC 5 relays with CPU variants CP300
SIPROTEC 5 relays with CPU variants CP100

Timeline

References

Open in Interactive Console →