First published: Tue Jul 11 2023(Updated: )
A vulnerability has been identified in SIMATIC CN 4100 (All versions < V2.5). Affected device consists of improper access controls in the configuration files that leads to privilege escalation. An attacker could gain admin access with this vulnerability leading to complete device control.
Credit: productcert@siemens.com productcert@siemens.com
Affected Software | Affected Version | How to fix |
---|---|---|
Siemens Simatic Cn 4100 | <2.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-29130 is classified as a high-severity vulnerability due to the potential for privilege escalation.
To fix CVE-2023-29130, upgrade the SIMATIC CN 4100 to version 2.5 or later.
Exploitation of CVE-2023-29130 can lead to unauthorized admin access and full control over the affected device.
CVE-2023-29130 affects all versions of SIMATIC CN 4100 that are below version 2.5.
The vendor for the affected software in CVE-2023-29130 is Siemens.