7.5
CWE
401
Advisory Published
Updated

CVE-2021-37205

First published: Wed Feb 09 2022(Updated: )

A vulnerability has been identified in SIMATIC Drive Controller family (All versions >= V2.9.2 < V2.9.4), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) (All versions >= V21.9 < V21.9.4), SIMATIC S7-1200 CPU family (incl. SIPLUS variants) (All versions >= V4.5.0 < V4.5.2), SIMATIC S7-1500 CPU family (incl. related ET200 CPUs and SIPLUS variants) (All versions >= V2.9.2 < V2.9.4), SIMATIC S7-1500 Software Controller (All versions >= V21.9 < V21.9.4), SIMATIC S7-PLCSIM Advanced (All versions >= V4.0 < V4.0 SP1), SIPLUS TIM 1531 IRC (All versions < V2.3.6), TIM 1531 IRC (All versions < V2.3.6). An unauthenticated attacker could cause a denial-of-service condition in a PLC when sending specially prepared packets over port 102/tcp. A restart of the affected device is needed to restore normal operations.

Credit: productcert@siemens.com

Affected SoftwareAffected VersionHow to fix
Siemens SIMATIC Drive Controller CPU 1504D TF<2.9.4
Siemens SIMATIC Drive Controller CPU 1504D TF
Siemens Simatic Drive Controller CPU 1507D TF Firmware<2.9.4
Siemens SIMATIC Drive Controller CPU 1507D TF Firmware
Siemens SIMATIC ET 200SP Open Controller firmware
Siemens SIMATIC ET 200SP Open Controller CPU 1515SP PC2 Firmware
siemens simatic s7-plcsim advanced firmware<4.0
siemens simatic s7-plcsim advanced firmware=4.0
siemens SIMATIC S7-PLCSIM Advanced
siemens tim 1531 irc firmware>=2.2
siemens tim 1531 irc
Siemens SIMATIC S7-1500 Firmware
siemens simatic s7-1200 cpu 1211c firmware>=4.5.0<4.5.2
siemens simatic s7-1200 cpu 1211c
siemens simatic s7-1200 cpu 1212c firmware>=4.5.0<4.5.2
siemens simatic s7-1200 cpu 1212c
siemens simatic s7-1200 cpu 1212fc firmware>=4.5.0<4.5.2
siemens simatic s7-1200 cpu 1212fc
siemens simatic s7-1200 cpu 1214fc firmware>=4.5.0<4.5.2
siemens simatic s7-1200 cpu 1214fc
siemens simatic s7-1200 cpu 1214c firmware>=4.5.0<4.5.2
Siemens SIMATIC S7-1200 CPU 1214C DC/DC/DC
siemens simatic s7-1200 cpu 1215fc firmware>=4.5.0<4.5.2
siemens simatic s7-1200 cpu 1215fc
siemens simatic s7-1200 cpu 1215c firmware>=4.5.0<4.5.2
Siemens CPU 1215C
siemens simatic s7-1200 cpu 1217c firmware>=4.5.0<4.5.2
siemens simatic s7-1200 cpu 1217c
siemens simatic s7-1500 cpu 1510sp-1 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1510sp-1
siemens simatic s7-1500 cpu 1510sp firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1510sp
siemens simatic s7-1500 cpu 1511-1 firmware>=2.9.2<2.9.4
Siemens Simatic S7-1500
siemens simatic s7-1500 cpu 1511c-1 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1511c-1
siemens simatic s7-1500 cpu 1511f-1 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1511f-1
siemens simatic s7-1500 cpu 1511t-1 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1511t-1
siemens simatic s7-1500 cpu 1511tf-1 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1511tf-1
siemens simatic s7-1500 cpu 1512c-1 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1512c-1
siemens simatic s7-1500 cpu 1512sp-1 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1512sp-1
siemens simatic s7-1500 cpu 1512spf-1 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1512spf-1
siemens simatic s7-1500 cpu 1513-1 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1513-1
siemens simatic s7-1500 cpu 1513f-1 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1513f-1
siemens simatic s7-1500 cpu 1513r-1 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1513r-1
siemens simatic s7-1500 cpu cpu 1513prof-2 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu cpu 1513prof-2
siemens simatic s7-1500 cpu cpu 1513pro-2 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu cpu 1513pro-2
siemens simatic s7-1500 cpu 1515-2 firmware>=2.9.2<2.9.4
Siemens Simatic S7-1500
siemens simatic s7-1500 cpu 1515f-2 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1515f-2
siemens simatic s7-1500 cpu 1515r-2 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1515r-2
siemens simatic s7-1500 cpu 1515t-2 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1515t-2
siemens simatic s7-1500 cpu 1515tf-2 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1515tf-2
siemens simatic s7-1500 cpu 1516pro f firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1516pro f
siemens simatic s7-1500 cpu 1516pro-2 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1516pro-2
siemens simatic s7-1500 cpu 1516-3 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1516-3
siemens simatic s7-1500 cpu 1516f-3 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1516f-3
siemens simatic s7-1500 cpu 1516t-3 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1516t-3
siemens simatic s7-1500 cpu 1516tf-3 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1516tf-3
siemens simatic s7-1500 cpu 1517-3 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1517-3
siemens simatic s7-1500 cpu 1517f-3 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1517f-3
siemens simatic s7-1500 cpu 1517tf-3 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1517tf-3
siemens simatic s7-1500 cpu 1518-4 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1518-4
siemens simatic s7-1500 cpu 1518f-4 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1518f-4
siemens simatic s7-1500 cpu 1518hf-4 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1518hf-4
siemens simatic s7-1500 cpu 1518t-4 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1518t-4
siemens simatic s7-1500 cpu 1518tf-4 firmware>=2.9.2<2.9.4
siemens simatic s7-1500 cpu 1518tf-4

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Frequently Asked Questions

  • What is the severity of CVE-2021-37205?

    CVE-2021-37205 has a critical severity rating due to its potential impact on system integrity.

  • How do I fix CVE-2021-37205?

    To fix CVE-2021-37205, users should update to the patched versions of the affected Siemens products as specified by Siemens.

  • What is affected by CVE-2021-37205?

    CVE-2021-37205 affects various Siemens SIMATIC Drive Controllers and S7-1200 CPU families specifically between certain version ranges.

  • What are the potential impacts of CVE-2021-37205?

    The exploitation of CVE-2021-37205 may lead to unauthorized access, integrity loss, or disruption of services.

  • Is there a workaround for CVE-2021-37205 until a patch can be applied?

    There are no specific workarounds documented for CVE-2021-37205, thus immediate patching is recommended.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203