First published: Tue Feb 11 2025(Updated: )
A vulnerability has been identified in SIPROTEC 5 6MD84 (CP300) (All versions), SIPROTEC 5 6MD85 (CP200) (All versions), SIPROTEC 5 6MD85 (CP300) (All versions), SIPROTEC 5 6MD86 (CP200) (All versions), SIPROTEC 5 6MD86 (CP300) (All versions), SIPROTEC 5 6MD89 (CP300) (All versions), SIPROTEC 5 6MU85 (CP300) (All versions), SIPROTEC 5 7KE85 (CP200) (All versions), SIPROTEC 5 7KE85 (CP300) (All versions), SIPROTEC 5 7SA82 (CP100) (All versions), SIPROTEC 5 7SA82 (CP150) (All versions), SIPROTEC 5 7SA86 (CP200) (All versions), SIPROTEC 5 7SA86 (CP300) (All versions), SIPROTEC 5 7SA87 (CP200) (All versions), SIPROTEC 5 7SA87 (CP300) (All versions), SIPROTEC 5 7SD82 (CP100) (All versions), SIPROTEC 5 7SD82 (CP150) (All versions), SIPROTEC 5 7SD86 (CP200) (All versions), SIPROTEC 5 7SD86 (CP300) (All versions), SIPROTEC 5 7SD87 (CP200) (All versions), SIPROTEC 5 7SD87 (CP300) (All versions), SIPROTEC 5 7SJ81 (CP100) (All versions), SIPROTEC 5 7SJ81 (CP150) (All versions), SIPROTEC 5 7SJ82 (CP100) (All versions), SIPROTEC 5 7SJ82 (CP150) (All versions), SIPROTEC 5 7SJ85 (CP200) (All versions), SIPROTEC 5 7SJ85 (CP300) (All versions), SIPROTEC 5 7SJ86 (CP200) (All versions), SIPROTEC 5 7SJ86 (CP300) (All versions), SIPROTEC 5 7SK82 (CP100) (All versions), SIPROTEC 5 7SK82 (CP150) (All versions), SIPROTEC 5 7SK85 (CP200) (All versions), SIPROTEC 5 7SK85 (CP300) (All versions), SIPROTEC 5 7SL82 (CP100) (All versions), SIPROTEC 5 7SL82 (CP150) (All versions), SIPROTEC 5 7SL86 (CP200) (All versions), SIPROTEC 5 7SL86 (CP300) (All versions), SIPROTEC 5 7SL87 (CP200) (All versions), SIPROTEC 5 7SL87 (CP300) (All versions), SIPROTEC 5 7SS85 (CP200) (All versions), SIPROTEC 5 7SS85 (CP300) (All versions), SIPROTEC 5 7ST85 (CP200) (All versions), SIPROTEC 5 7ST85 (CP300) (All versions), SIPROTEC 5 7ST86 (CP300) (All versions), SIPROTEC 5 7SX82 (CP150) (All versions), SIPROTEC 5 7SX85 (CP300) (All versions), SIPROTEC 5 7SY82 (CP150) (All versions), SIPROTEC 5 7UM85 (CP300) (All versions), SIPROTEC 5 7UT82 (CP100) (All versions), SIPROTEC 5 7UT82 (CP150) (All versions), SIPROTEC 5 7UT85 (CP200) (All versions), SIPROTEC 5 7UT85 (CP300) (All versions), SIPROTEC 5 7UT86 (CP200) (All versions), SIPROTEC 5 7UT86 (CP300) (All versions), SIPROTEC 5 7UT87 (CP200) (All versions), SIPROTEC 5 7UT87 (CP300) (All versions), SIPROTEC 5 7VE85 (CP300) (All versions), SIPROTEC 5 7VK87 (CP200) (All versions), SIPROTEC 5 7VK87 (CP300) (All versions), SIPROTEC 5 7VU85 (CP300) (All versions), SIPROTEC 5 Compact 7SX800 (CP050) (All versions). Affected devices do not encrypt certain data within the on-board flash storage on their PCB. This could allow an attacker with physical access to read the entire filesystem of the device.
Credit: productcert@siemens.com
Affected Software | Affected Version | How to fix |
---|---|---|
Siemens SIPROTEC 5 6MD84 (CP300) | <= | |
Siemens SIPROTEC 5 6MD85 (CP200) | <= | |
Siemens SIPROTEC 5 6MD85 (CP300) | <= | |
Siemens SIPROTEC 5 6MD86 | <= | |
Siemens SIPROTEC 5 6MD86 | <= | |
Siemens SIPROTEC 5 6MD89 (CP300) | <= | |
Siemens SIPROTEC 5 6MU85 (CP300) | <= | |
Siemens SIPROTEC 5 7KE85 (CP200) | <= | |
Siemens SIPROTEC 5 7KE85 (CP300) | <= | |
Siemens SIPROTEC 5 7SA82 (CP100) | <= | |
Siemens SIPROTEC 5 7SA82 | <= | |
Siemens SIPROTEC 5 7SA86 (CP200) | <= | |
Siemens SIPROTEC 5 7SA86 (CP300) | <= | |
Siemens SIPROTEC 5 7SA87 (CP200) | <= | |
Siemens SIPROTEC 5 7SA87 (CP300) | <= | |
Siemens SIPROTEC 5 7SD82 (CP100) | <= | |
Siemens SIPROTEC 5 7SD82 (CP150) | <= | |
Siemens SIPROTEC 5 7SD86 (CP200) | <= | |
Siemens SIPROTEC 5 7SD86 (CP300) | <= | |
Siemens SIPROTEC 5 7SD87 (CP200) | <= | |
Siemens SIPROTEC 5 7SD87 (CP300) | <= | |
Siemens SIPROTEC 5 7SJ81 (CP100) | <= | |
Siemens SIPROTEC 5 7SJ81 (CP150) | <= | |
Siemens SIPROTEC 5 7SJ82 (CP100) | <= | |
Siemens SIPROTEC 5 7SJ82 (CP150) | <= | |
Siemens SIPROTEC 5 7SJ85 (CP200) | <= | |
Siemens SIPROTEC 5 7SJ85 (CP300) | <= | |
Siemens SIPROTEC 5 7SJ86 (CP200) | <= | |
Siemens SIPROTEC 5 7SJ86 (CP300) | <= | |
Siemens SIPROTEC 5 7SK82 (CP100) | <= | |
Siemens SIPROTEC 5 7SK82 (CP150) | <= | |
Siemens SIPROTEC 5 7SK85 (CP200) | <= | |
Siemens SIPROTEC 5 7SK85 (CP300) | <= | |
Siemens SIPROTEC 5 7SL82 (CP100) | <= | |
Siemens SIPROTEC 5 7SL82 (CP150) | <= | |
Siemens SIPROTEC 5 7SL86 (CP200) | <= | |
Siemens SIPROTEC 5 7SL86 (CP300) | <= | |
Siemens SIPROTEC 5 7SL87 (CP200) | <= | |
Siemens SIPROTEC 5 7SL87 (CP300) | <= | |
Siemens SIPROTEC 5 7SS85 (CP200) | <= | |
Siemens SIPROTEC 5 7SS85 (CP300) | <= | |
Siemens SIPROTEC 5 7ST85 (CP200) | <= | |
Siemens SIPROTEC 5 7ST85 (CP300) | <= | |
Siemens SIPROTEC 5 7ST86 (CP300) | <= | |
Siemens SIPROTEC 5 7SX82 (CP150) | <= | |
Siemens SIPROTEC 5 7SX85 (CP300) | <= | |
Siemens SIPROTEC 5 7SY82 (CP150) | <= | |
Siemens SIPROTEC 5 7UM85 (CP300) | <= | |
Siemens SIPROTEC 5 7UT82 (CP100) | <= | |
Siemens SIPROTEC 5 7UT82 (CP150) | <= | |
Siemens SIPROTEC 5 7UT85 (CP200) | <= | |
Siemens SIPROTEC 5 7UT85 (CP300) | <= | |
Siemens SIPROTEC 5 7UT86 (CP200) | <= | |
Siemens SIPROTEC 5 7UT86 (CP300) | <= | |
Siemens SIPROTEC 5 7UT87 (CP200) | <= | |
Siemens SIPROTEC 5 7UT87 (CP300) | <= | |
Siemens SIPROTEC 5 7VE85 (CP300) | <= | |
Siemens SIPROTEC 5 7VK87 (CP200) | <= | |
Siemens SIPROTEC 5 7VK87 (CP300) | <= | |
Siemens SIPROTEC 5 7VU85 (CP300) | <= | |
Siemens SIPROTEC 5 Compact 7SX800 | <= |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-53651 has been classified as a high severity vulnerability.
To fix CVE-2024-53651, update the affected Siemens SIPROTEC 5 devices to the latest patched version.
CVE-2024-53651 affects multiple models of Siemens SIPROTEC 5 including 6MD84, 6MD85, 6MD86, and others.
CVE-2024-53651 impacts control systems and devices in industrial environments that utilize SIPROTEC 5 technology.
Yes, CVE-2024-53651 could potentially lead to unauthorized access and system compromise.