SSH Configuration Flaw in SIMATIC CN 4100 Affects Siemens Devices
CVE-2023-29131

7.4HIGH

Key Information:

Vendor

Siemens

Vendor
CVE Published:
11 July 2023

What is CVE-2023-29131?

A security weakness has been discovered in the SIMATIC CN 4100 which affects all versions prior to V2.5. This vulnerability arises from an incorrect default setting in the SSH configuration that could potentially enable unauthorized network access, allowing attackers to circumvent established network isolation protections. Such exploitation could lead to significant security risks for industrial control environments.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

SIMATIC CN 4100 All versions < V2.5

References

CVSS V3.1

Score:
7.4
Severity:
HIGH
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.