First published: Tue Nov 12 2024(Updated: )
A vulnerability has been identified in SIMATIC CP 1543-1 V4.0 (6GK7543-1AX10-0XE0) (All versions >= V4.0.44 < V4.0.50). Affected devices do not properly handle authorization. This could allow an unauthenticated remote attacker to gain access to the filesystem.
Credit: productcert@siemens.com
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Siemens Simatic CP 1543-1 | >=4.0.44<4.0.50 | |
Siemens SIMATIC NET CP 1543-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2024-50310 is classified as high due to the potential for unauthorized access to the filesystem.
To mitigate CVE-2024-50310, update your SIMATIC CP 1543-1 firmware to a version greater than V4.0.50.
CVE-2024-50310 affects all versions of SIMATIC CP 1543-1 firmware from V4.0.44 to V4.0.50.
Yes, CVE-2024-50310 can be exploited by an unauthenticated remote attacker gaining unauthorized access.
The risks associated with CVE-2024-50310 include potential unauthorized access to sensitive filesystem data and control over the affected device.