CVE-2021-33719: Critical severity siemens siprotec 5 vulnerability
A vulnerability has been identified in SIPROTEC 5 relays with CPU variants CP050 (All versions < V8.80), SIPROTEC 5 relays with CPU variants CP100 (All versions < V8.80), SIPROTEC 5 relays with CPU variants CP300 (All versions < V8.80). Specially crafted packets sent to port 4443/tcp could cause a Denial-of-Service condition or potential remote code execution.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2021-33719.
What is the affected software?
The affected software is Siemens SIPROTEC 5 relays with CPU variants CP050 (All versions < V8.80), CP100 (All versions < V8.80), and CP300 (All versions < V8.80).
What is the severity of CVE-2021-33719?
The severity of CVE-2021-33719 is critical, with a CVSS score of 9.8.
How can the vulnerability be exploited?
The vulnerability can be exploited by sending specially crafted packets to port 4443/tcp.
Are there any known fixes for this vulnerability?
Siemens has not provided any specific fixes for this vulnerability, but organizations are advised to refer to the provided reference for any updates or patches.