ZeroHour

CVE-2023-49621

CVSS 3.1
9.8 critical
EPSS
<1%p47
Published
()
Modified
Description

A vulnerability has been identified in SIMATIC CN 4100 (All versions < V2.7). The "intermediate installation" system state of the affected application uses default credential with admin privileges. An attacker could use the credentials to gain complete control of the affected device.

Vendors
siemens
Products
simatic cn 4100 firmware
Weakness
CWE-1392
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.