Message Protection Bypass Vulnerability in Siemens SIMATIC Products
CVE-2019-10929
Key Information:
What is CVE-2019-10929?
A message protection bypass vulnerability exists in various Siemens SIMATIC products that affects the integrity protection calculations. This flaw could allow a Man-in-the-Middle attacker to intercept and alter network traffic directed at the vulnerable devices, which operate over port 102/tcp. The issue arises from specific properties in the integrity protection mechanism, potentially compromising the security and functionality of the devices involved.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
SIMATIC CP 1626 All versions
SIMATIC ET 200SP Open Controller CPU 1515SP PC (incl. SIPLUS variants) All versions
SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) All versions < V20.8
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved