First published: Wed Feb 09 2022(Updated: )
A vulnerability has been identified in SIMATIC Drive Controller family (All versions >= V2.9.2 < V2.9.4), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) (All versions >= V21.9 < V21.9.4), SIMATIC S7-1200 CPU family (incl. SIPLUS variants) (All versions >= V4.5.0 < V4.5.2), SIMATIC S7-1500 CPU family (incl. related ET200 CPUs and SIPLUS variants) (All versions >= V2.9.2 < V2.9.4), SIMATIC S7-1500 Software Controller (All versions >= V21.9 < V21.9.4), SIMATIC S7-PLCSIM Advanced (All versions >= V4.0 < V4.0 SP1), SIPLUS TIM 1531 IRC (All versions < V2.3.6), TIM 1531 IRC (All versions < V2.3.6). An unauthenticated attacker could cause a denial-of-service condition in a PLC when sending specially prepared packets over port 102/tcp. A restart of the affected device is needed to restore normal operations.
Credit: productcert@siemens.com
Affected Software | Affected Version | How to fix |
---|---|---|
Siemens SIMATIC Drive Controller CPU 1504D TF | <2.9.4 | |
Siemens SIMATIC Drive Controller Firmware | ||
Siemens SIMATIC Drive Controller CPU 1507D TF Firmware | <2.9.4 | |
Siemens SIMATIC Drive Controller CPU 1507D TF Firmware | ||
Siemens SIMATIC ET 200SP Open Controller 1515SP PC2 | ||
Siemens SIMATIC ET 200SP Open Controller CPU 1515SP PC2 Firmware | ||
Siemens SIMATIC S7 PLCSIM Advanced Firmware | <4.0 | |
Siemens SIMATIC S7 PLCSIM Advanced Firmware | =4.0 | |
Siemens SIMATIC S7-PLCSIM Advanced Firmware | ||
Siemens Simatic TIM 1531 IRC Firmware | >=2.2 | |
Siemens TIM 1531 IRC Firmware | ||
Siemens S7-1500 Controller | ||
Siemens S7-1200 CPU 1211C Firmware | >=4.5.0<4.5.2 | |
Siemens Simatic S7-1200 CPU 1211C Firmware | ||
Siemens S7-1200 CPU 1212C Firmware | >=4.5.0<4.5.2 | |
Siemens SIMATIC S7-1200 CPU 1212C Firmware | ||
Siemens S7-1200 CPU 1212FC Firmware | >=4.5.0<4.5.2 | |
Siemens S7-1200 CPU 1212FC | ||
Siemens S7-1200 CPU 1214FC Firmware | >=4.5.0<4.5.2 | |
Siemens SIMATIC S7-1200 CPU 1214FC Firmware | ||
Siemens S7-1200 CPU 1214C Firmware | >=4.5.0<4.5.2 | |
Siemens SIMATIC S7-1200 CPU | ||
Siemens Simatic S7-1200 CPU Firmware | >=4.5.0<4.5.2 | |
Siemens SIMATIC S7-1200 CPU 1215FC DC/DC/DC | ||
Siemens SIMATIC S7-1200 CPU 1215C DC/DC/DC | >=4.5.0<4.5.2 | |
Siemens CPU 1215C | ||
Siemens S7-1200 CPU 1217C Firmware | >=4.5.0<4.5.2 | |
Siemens S7-1200 CPU 1217C | ||
Siemens SIMATIC S7-1500 CPU 1510SP Firmware | >=2.9.2<2.9.4 | |
Siemens SIMATIC S7-1500 CPU 1510SP Firmware | ||
Siemens SIMATIC S7-1500 CPU 1510SP Firmware | >=2.9.2<2.9.4 | |
Siemens SIMATIC S7-1500 CPU 1510SP F-1 | ||
Siemens SIMATIC S7-1500 CPU 1511-1 | >=2.9.2<2.9.4 | |
Siemens SIMATIC S7-1500 CPU 1511-1 PN | ||
Siemens SIMATIC S7-1500 CPU 1511C-1 | >=2.9.2<2.9.4 | |
Siemens SIMATIC S7-1500 CPU 1511C-1 PN | ||
Siemens SIMATIC S7-1500 CPU 1511f-1 PN | >=2.9.2<2.9.4 | |
Siemens SIMATIC S7-1511F-1 PN CPU | ||
Siemens SIMATIC S7-1500 CPU 1511T-1 Firmware | >=2.9.2<2.9.4 | |
Siemens SIMATIC S7-1500 CPU 1511T-1 PN | ||
Siemens SIMATIC S7-1500 CPU 1511TF-1 | >=2.9.2<2.9.4 | |
Siemens SIMATIC S7-1500 CPU 1511TF-1 PN | ||
Siemens SIMATIC S7-1500 CPU 1512C-1 PN Firmware | >=2.9.2<2.9.4 | |
Siemens SIMATIC S7-1500 CPU 1512C-1 PN | ||
Siemens SIMATIC S7-1500 CPU 1512SP-1 | >=2.9.2<2.9.4 | |
Siemens SIMATIC S7-1500 CPU 1512SP-1 PN | ||
Siemens SIMATIC S7-1500 CPU 1512SPF-1 | >=2.9.2<2.9.4 | |
Siemens SIMATIC S7-1500 CPU 1512SPF-1 Firmware | ||
Siemens SIMATIC S7-1513-1 PN CPU | >=2.9.2<2.9.4 | |
Siemens SIMATIC S7-1513-1 PN CPU | ||
Siemens SIMATIC S7-1500 CPU 1513F-1 | >=2.9.2<2.9.4 | |
Siemens SIMATIC S7-1500 CPU 1513f-1 PN | ||
Siemens SIMATIC S7-1500 CPU 1513R-1 PN Firmware | >=2.9.2<2.9.4 | |
Siemens SIMATIC S7-1500 CPU 1513R-1 Firmware | ||
Siemens SIMATIC S7-1500 CPU 1513PROF-2 Firmware | >=2.9.2<2.9.4 | |
Siemens SIMATIC S7-1500 CPU 1513PROF-2 Firmware | ||
Siemens Simatic S7-1500 CPU 1513Pro-2 | >=2.9.2<2.9.4 | |
Siemens Simatic S7-1500 CPU 1513Pro-2 | ||
Siemens S7-1500 Firmware | >=2.9.2<2.9.4 | |
Siemens SIMATIC S7-1515-2 PN CPU | ||
Siemens SIMATIC S7-1500 CPU 1515f-2 PN firmware | >=2.9.2<2.9.4 | |
Siemens S7-1500 CPU | ||
Siemens Simatic S7-1500 CPU 1515R-2 Firmware | >=2.9.2<2.9.4 | |
Siemens SIMATIC S7-1500 CPU 1515R-2 PN | ||
Siemens Simatic S7-1500 CPU 1515T-2 Firmware | >=2.9.2<2.9.4 | |
Siemens Simatic S7-1500 CPU 1515T-2 PN | ||
Siemens SIMATIC S7-1500 CPU 1515TF-2 | >=2.9.2<2.9.4 | |
Siemens SIMATIC S7-1500 CPU 1515TF-2 PN | ||
Siemens SIMATIC S7-1500 CPU 1516PRO F Firmware | >=2.9.2<2.9.4 | |
Siemens SIMATIC S7-1500 CPU 1516PRO F-2 PN | ||
Siemens SIMATIC S7-1500 CPU 1516PRO-2 Firmware | >=2.9.2<2.9.4 | |
Siemens SIMATIC S7-1500 CPU 1516pro-2 PN | ||
Siemens SIMATIC S7-1500 CPU 1516-3 | >=2.9.2<2.9.4 | |
Siemens SIMATIC S7-1500 | ||
Siemens SIMATIC S7-1516F-3 PN/DP CPU | >=2.9.2<2.9.4 | |
Siemens SIMATIC S7-1516F-3 PN/DP CPU | ||
Siemens Simatic S7-1500 CPU 1516T-3 | >=2.9.2<2.9.4 | |
Siemens Simatic S7-1500 | ||
Siemens SIMATIC S7-1500 CPU 1516TF-3 Firmware | >=2.9.2<2.9.4 | |
Siemens Simatic S7-1500 | ||
Siemens SIMATIC S7-1500 CPU 1517-3 PN Firmware | >=2.9.2<2.9.4 | |
Siemens SIMATIC S7-1517-3 PN/DP CPU | ||
Siemens SIMATIC S7-1500 CPU 1517F-3 | >=2.9.2<2.9.4 | |
Siemens SIMATIC S7-1500 CPU 1517F-3 Firmware | ||
Siemens SIMATIC S7-1500 T Firmware | >=2.9.2<2.9.4 | |
Siemens SIMATIC S7-1500 CPU 1517TF-3 Firmware | ||
Siemens SIMATIC S7-1518-4 PN/DP CPU | >=2.9.2<2.9.4 | |
Siemens SIMATIC S7-1500 | ||
Siemens SIMATIC S7-1500 CPU 1518F-4 | >=2.9.2<2.9.4 | |
Siemens SIMATIC S7-1518F-4 PN/DP CPU | ||
Siemens SIMATIC S7-1500 CPU 1518-4 Firmware | >=2.9.2<2.9.4 | |
Siemens Simatic S7-1500 | ||
Siemens Simatic S7-1500 CPU 1518T-4 PN/DP Firmware | >=2.9.2<2.9.4 | |
Siemens Simatic S7-1500 | ||
Siemens SIMATIC S7-1500 CPU 1518T-4 Firmware | >=2.9.2<2.9.4 | |
Siemens Simatic S7-1500 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-37205 has a critical severity rating due to its potential impact on system integrity.
To fix CVE-2021-37205, users should update to the patched versions of the affected Siemens products as specified by Siemens.
CVE-2021-37205 affects various Siemens SIMATIC Drive Controllers and S7-1200 CPU families specifically between certain version ranges.
The exploitation of CVE-2021-37205 may lead to unauthorized access, integrity loss, or disruption of services.
There are no specific workarounds documented for CVE-2021-37205, thus immediate patching is recommended.