First published: Wed Feb 09 2022(Updated: )
A vulnerability has been identified in SIMATIC Drive Controller family (All versions >= V2.9.2 < V2.9.4), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) (All versions >= V21.9 < V21.9.4), SIMATIC S7-1200 CPU family (incl. SIPLUS variants) (All versions >= V4.5.0 < V4.5.2), SIMATIC S7-1500 CPU family (incl. related ET200 CPUs and SIPLUS variants) (All versions >= V2.9.2 < V2.9.4), SIMATIC S7-1500 Software Controller (All versions >= V21.9 < V21.9.4), SIMATIC S7-PLCSIM Advanced (All versions >= V4.0 < V4.0 SP1), SIPLUS TIM 1531 IRC (All versions < V2.3.6), TIM 1531 IRC (All versions < V2.3.6). An unauthenticated attacker could cause a denial-of-service condition in a PLC when sending specially prepared packets over port 102/tcp. A restart of the affected device is needed to restore normal operations.
Credit: productcert@siemens.com
Affected Software | Affected Version | How to fix |
---|---|---|
Siemens SIMATIC Drive Controller CPU 1504D TF | <2.9.4 | |
Siemens SIMATIC Drive Controller CPU 1504D TF | ||
Siemens Simatic Drive Controller CPU 1507D TF Firmware | <2.9.4 | |
Siemens SIMATIC Drive Controller CPU 1507D TF Firmware | ||
Siemens SIMATIC ET 200SP Open Controller firmware | ||
Siemens SIMATIC ET 200SP Open Controller CPU 1515SP PC2 Firmware | ||
siemens simatic s7-plcsim advanced firmware | <4.0 | |
siemens simatic s7-plcsim advanced firmware | =4.0 | |
siemens SIMATIC S7-PLCSIM Advanced | ||
siemens tim 1531 irc firmware | >=2.2 | |
siemens tim 1531 irc | ||
Siemens SIMATIC S7-1500 Firmware | ||
siemens simatic s7-1200 cpu 1211c firmware | >=4.5.0<4.5.2 | |
siemens simatic s7-1200 cpu 1211c | ||
siemens simatic s7-1200 cpu 1212c firmware | >=4.5.0<4.5.2 | |
siemens simatic s7-1200 cpu 1212c | ||
siemens simatic s7-1200 cpu 1212fc firmware | >=4.5.0<4.5.2 | |
siemens simatic s7-1200 cpu 1212fc | ||
siemens simatic s7-1200 cpu 1214fc firmware | >=4.5.0<4.5.2 | |
siemens simatic s7-1200 cpu 1214fc | ||
siemens simatic s7-1200 cpu 1214c firmware | >=4.5.0<4.5.2 | |
Siemens SIMATIC S7-1200 CPU 1214C DC/DC/DC | ||
siemens simatic s7-1200 cpu 1215fc firmware | >=4.5.0<4.5.2 | |
siemens simatic s7-1200 cpu 1215fc | ||
siemens simatic s7-1200 cpu 1215c firmware | >=4.5.0<4.5.2 | |
Siemens CPU 1215C | ||
siemens simatic s7-1200 cpu 1217c firmware | >=4.5.0<4.5.2 | |
siemens simatic s7-1200 cpu 1217c | ||
siemens simatic s7-1500 cpu 1510sp-1 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1510sp-1 | ||
siemens simatic s7-1500 cpu 1510sp firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1510sp | ||
siemens simatic s7-1500 cpu 1511-1 firmware | >=2.9.2<2.9.4 | |
Siemens Simatic S7-1500 | ||
siemens simatic s7-1500 cpu 1511c-1 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1511c-1 | ||
siemens simatic s7-1500 cpu 1511f-1 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1511f-1 | ||
siemens simatic s7-1500 cpu 1511t-1 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1511t-1 | ||
siemens simatic s7-1500 cpu 1511tf-1 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1511tf-1 | ||
siemens simatic s7-1500 cpu 1512c-1 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1512c-1 | ||
siemens simatic s7-1500 cpu 1512sp-1 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1512sp-1 | ||
siemens simatic s7-1500 cpu 1512spf-1 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1512spf-1 | ||
siemens simatic s7-1500 cpu 1513-1 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1513-1 | ||
siemens simatic s7-1500 cpu 1513f-1 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1513f-1 | ||
siemens simatic s7-1500 cpu 1513r-1 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1513r-1 | ||
siemens simatic s7-1500 cpu cpu 1513prof-2 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu cpu 1513prof-2 | ||
siemens simatic s7-1500 cpu cpu 1513pro-2 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu cpu 1513pro-2 | ||
siemens simatic s7-1500 cpu 1515-2 firmware | >=2.9.2<2.9.4 | |
Siemens Simatic S7-1500 | ||
siemens simatic s7-1500 cpu 1515f-2 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1515f-2 | ||
siemens simatic s7-1500 cpu 1515r-2 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1515r-2 | ||
siemens simatic s7-1500 cpu 1515t-2 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1515t-2 | ||
siemens simatic s7-1500 cpu 1515tf-2 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1515tf-2 | ||
siemens simatic s7-1500 cpu 1516pro f firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1516pro f | ||
siemens simatic s7-1500 cpu 1516pro-2 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1516pro-2 | ||
siemens simatic s7-1500 cpu 1516-3 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1516-3 | ||
siemens simatic s7-1500 cpu 1516f-3 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1516f-3 | ||
siemens simatic s7-1500 cpu 1516t-3 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1516t-3 | ||
siemens simatic s7-1500 cpu 1516tf-3 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1516tf-3 | ||
siemens simatic s7-1500 cpu 1517-3 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1517-3 | ||
siemens simatic s7-1500 cpu 1517f-3 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1517f-3 | ||
siemens simatic s7-1500 cpu 1517tf-3 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1517tf-3 | ||
siemens simatic s7-1500 cpu 1518-4 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1518-4 | ||
siemens simatic s7-1500 cpu 1518f-4 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1518f-4 | ||
siemens simatic s7-1500 cpu 1518hf-4 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1518hf-4 | ||
siemens simatic s7-1500 cpu 1518t-4 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1518t-4 | ||
siemens simatic s7-1500 cpu 1518tf-4 firmware | >=2.9.2<2.9.4 | |
siemens simatic s7-1500 cpu 1518tf-4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-37185 has been assigned a medium severity rating, indicating potential risk in certain scenarios.
To mitigate CVE-2021-37185, users should upgrade to the versions of affected software that are specified in the official Siemens security advisory.
CVE-2021-37185 affects various Siemens products, including SIMATIC Drive Controllers, SIMATIC ET 200SP, and SIMATIC S7-1200 CPU family.
CVE-2021-37185 was published in August 2021, highlighting vulnerabilities in certain Siemens industrial control systems.
CVE-2021-37185 is primarily a security vulnerability associated with insufficient input validation in the affected Siemens components.