Improper Input Validation in SIPROTEC 5 Devices by Siemens
CVE-2021-41769
Key Information:
- Vendor
Siemens
- Status
- Vendor
- CVE Published:
- 11 January 2022
What is CVE-2021-41769?
An improper input validation vulnerability has been identified in several SIPROTEC 5 devices, which could allow an unauthenticated user to obtain sensitive device information through the web server. This flaw impacts various models equipped with the CP300 and CP100 CPUs, potentially exposing critical operational data. Users should ensure devices are updated to versions equal to or greater than V8.83 to mitigate this risk.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
SIPROTEC 5 6MD85 devices (CPU variant CP300) All versions < V8.83
SIPROTEC 5 6MD86 devices (CPU variant CP300) All versions < V8.83
SIPROTEC 5 6MD89 devices (CPU variant CP300) All versions < V8.83
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved