Vulnerability Description
A vulnerability has been identified in SIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants) (All versions), SIMATIC S7-400 CPU family (incl. SIPLUS variants) (All versions), SIMATIC WinAC RTX (F) 2010 (All versions), SINUMERIK 840D sl (All versions). The authentication protocol between a client and a PLC via port 102/tcp (ISO-TSAP) insufficiently protects the transmitted password. This could allow an attacker that is able to intercept the network traffic to obtain valid PLC credentials.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Siemens | Simatic S7-300 Cpu 312 Firmware | All versions |
| Siemens | Simatic S7-300 Cpu 312 | - |
| Siemens | Simatic S7-300 Cpu 314 Firmware | All versions |
| Siemens | Simatic S7-300 Cpu 314 | - |
| Siemens | Simatic S7-300 Cpu 315-2 Dp Firmware | All versions |
| Siemens | Simatic S7-300 Cpu 315-2 Dp | - |
| Siemens | Simatic S7-300 Cpu 315-2 Pn Firmware | All versions |
| Siemens | Simatic S7-300 Cpu 315-2 Pn | - |
| Siemens | Simatic S7-300 Cpu 317-2 Pn Firmware | All versions |
| Siemens | Simatic S7-300 Cpu 317-2 Pn | - |
| Siemens | Simatic S7-300 Cpu 317-2 Dp Firmware | All versions |
| Siemens | Simatic S7-300 Cpu 317-2 Dp | - |
| Siemens | Simatic S7-300 Cpu 315F-2 Dp Firmware | All versions |
| Siemens | Simatic S7-300 Cpu 315F-2 Dp | - |
| Siemens | Simatic S7-300 Cpu 315F-2 Pn Firmware | All versions |
| Siemens | Simatic S7-300 Cpu 315F-2 Pn | - |
| Siemens | Simatic S7-300 Cpu 317F-2 Pn Firmware | All versions |
| Siemens | Simatic S7-300 Cpu 317F-2 Pn | - |
| Siemens | Simatic S7-300 Cpu 317F-2 Dp Firmware | All versions |
| Siemens | Simatic S7-300 Cpu 317F-2 Dp | - |
Related Weaknesses (CWE)
References
- https://cert-portal.siemens.com/productcert/pdf/ssa-381684.pdfVendor Advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-381684.pdfVendor Advisory
FAQ
What is CVE-2020-15791?
CVE-2020-15791 is a vulnerability with a CVSS score of 6.5 (MEDIUM). A vulnerability has been identified in SIMATIC S7-300 CPU family (incl. related ET200 CPUs and SIPLUS variants) (All versions), SIMATIC S7-400 CPU family (incl. SIPLUS variants) (All versions), SIMATI...
How severe is CVE-2020-15791?
CVE-2020-15791 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-15791?
Check the references section above for vendor advisories and patch information. Affected products include: Siemens Simatic S7-300 Cpu 312 Firmware, Siemens Simatic S7-300 Cpu 312, Siemens Simatic S7-300 Cpu 314 Firmware, Siemens Simatic S7-300 Cpu 314, Siemens Simatic S7-300 Cpu 315-2 Dp Firmware.