First published: Fri Nov 18 2016(Updated: )
A vulnerability has been identified in SIMATIC CP 1543-1 (All versions < V2.0.28), SIPLUS NET CP 1543-1 (All versions < V2.0.28). Users with elevated privileges to TIA-Portal and project data on the engineering station could possibly get privileged access on affected devices.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Siemens Simatic CP 1543-1 | ||
Siemens SIMATIC NET CP 1543-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-8561 has been classified as a high severity vulnerability due to its potential for privileged access on affected devices.
To fix CVE-2016-8561, update the firmware of SIMATIC CP 1543-1 and SIPLUS NET CP 1543-1 to versions 2.0.28 or higher.
CVE-2016-8561 affects users with elevated privileges accessing TIA-Portal and project data on engineering stations connected to the vulnerable devices.
The vulnerable devices in CVE-2016-8561 include all versions of SIMATIC CP 1543-1 and SIPLUS NET CP 1543-1 prior to version 2.0.28.
The potential impacts of CVE-2016-8561 include unauthorized privileged access, which could lead to security breaches in industrial environments.