Privilege Escalation Vulnerability in SIMATIC CN 4100 by Siemens
CVE-2023-29130
9.9CRITICAL
What is CVE-2023-29130?
A privilege escalation vulnerability has been detected in the SIMATIC CN 4100, affecting all versions prior to V2.5. This vulnerability stems from improper access controls within the configuration files, allowing attackers to elevate their privileges to admin status. As a result, an unauthorized user can gain complete control over the affected device, posing significant risks to system integrity and security. It is imperative for users to assess their systems and apply necessary mitigations to prevent exploitation.
Affected Version(s)
SIMATIC CN 4100 All versions < V2.5