Link | Resource |
---|---|
https://cert-portal.siemens.com/productcert/pdf/ssa-538778.pdf | Vendor Advisory |
https://us-cert.cisa.gov/ics/advisories/icsa-21-131-12 | Third Party Advisory US Government Resource |
Configuration 1 (hide)
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Configuration 6 (hide)
AND |
|
Configuration 7 (hide)
AND |
|
Configuration 8 (hide)
AND |
|
Configuration 9 (hide)
AND |
|
Configuration 10 (hide)
AND |
|
Configuration 11 (hide)
AND |
|
Configuration 12 (hide)
AND |
|
Configuration 13 (hide)
AND |
|
Configuration 14 (hide)
AND |
|
Configuration 15 (hide)
AND |
|
Configuration 16 (hide)
AND |
|
Configuration 17 (hide)
AND |
|
Configuration 18 (hide)
AND |
|
Configuration 19 (hide)
AND |
|
Configuration 20 (hide)
|
16 Dec 2021, 18:26
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_7\"_firmware:15.1:update4:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900f_firmware:15.1:update5:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900f_firmware:15.1:-:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900_firmware:15.1:-:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_panels_4\"_firmware:15.1:update3:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_15\"_firmware:15.1:update5:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_15\"_firmware:16:update3:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_panels_22\"_firmware:15.1:update2:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_7\"_firmware:16:update1:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900f_firmware:16:update1:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_7\"_firmware:15.1:-:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_panels_22\"_firmware:15.1:update3:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900f_firmware:15.1:update2:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp400f_firmware:16:update1:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_15\"_firmware:15.1:update1:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900f_firmware:15.1:update1:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_15\"_firmware:16:update2:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_7\"_firmware:15.1:update2:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_panels_4\"_firmware:16:update3:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_15\"_firmware:16:*:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700f_firmware:16:update2:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700f_firmware:15.1:update3:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_15\"_firmware:15.1:update2:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp400f_firmware:15.1:update1:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700_firmware:16:update3:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700_firmware:15.1:update5:*:*:*:*:*:* cpe:2.3:a:siemens:simatic_wincc_runtime_advanced:15.1:update3:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp400f_firmware:15.1:update3:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp400f_firmware:16:update2:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900_firmware:16:update3:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_panels_22\"_firmware:15.1:update1:*:*:*:*:*:* cpe:2.3:a:siemens:simatic_wincc_runtime_advanced:15.1:update1:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_7\"_firmware:16:update3:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700_firmware:16:update1:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_panels_4\"_firmware:15.1:update1:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_7\"_firmware:15.1:update5:*:*:*:*:*:* cpe:2.3:a:siemens:simatic_wincc_runtime_advanced:15.1:update2:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700f_firmware:15.1:update5:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_panels_4\"_firmware:16:update2:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp400f_firmware:15.1:update4:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_panels_22\"_firmware:16:update1:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900f_firmware:16:update2:*:*:*:*:*:* cpe:2.3:a:siemens:simatic_wincc_runtime_advanced:15.1:update5:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_panels_22\"_firmware:15.1:update5:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700_firmware:15.1:update4:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700_firmware:16:update2:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_panels_4\"_firmware:15.1:-:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900f_firmware:15.1:update4:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700f_firmware:16:update3:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp400f_firmware:15.1:update2:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700_firmware:15.1:update3:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900_firmware:15.1:update2:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_panels_4\"_firmware:15.1:update2:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp400f_firmware:16:update3:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_15\"_firmware:16:update1:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900_firmware:16:update2:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900_firmware:15.1:update1:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900f_firmware:15.1:update3:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900f_firmware:16:update3:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700f_firmware:15.1:-:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_panels_22\"_firmware:15.1:-:*:*:*:*:*:* cpe:2.3:a:siemens:simatic_wincc_runtime_advanced:15.1:update4:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_7\"_firmware:15.1:update3:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_panels_4\"_firmware:16:update1:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_panels_22\"_firmware:16:update2:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_7\"_firmware:16:update2:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_panels_4\"_firmware:15.1:update5:*:*:*:*:*:* cpe:2.3:a:siemens:simatic_wincc_runtime_advanced:15.1:-:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_7\"_firmware:15.1:update1:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_15\"_firmware:15.1:-:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp400f_firmware:15.1:-:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900_firmware:15.1:update4:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700f_firmware:15.1:update4:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900_firmware:15.1:update3:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_15\"_firmware:15.1:update4:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_15\"_firmware:15.1:update3:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700f_firmware:15.1:update1:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700_firmware:15.1:update1:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_panels_4\"_firmware:15.1:update4:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_panels_22\"_firmware:16:update3:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900_firmware:16:update1:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp400f_firmware:15.1:update5:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700f_firmware:15.1:update2:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900_firmware:15.1:update5:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700f_firmware:16:update1:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700_firmware:15.1:-:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700_firmware:15.1:update2:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_panels_22\"_firmware:15.1:update4:*:*:*:*:*:* |
12 Oct 2021, 10:15
Type | Values Removed | Values Added |
---|---|---|
Summary | A vulnerability has been identified in SIMATIC HMI Comfort Outdoor Panels V15 7\" & 15\" (incl. SIPLUS variants) (All versions < V15.1 Update 6), SIMATIC HMI Comfort Outdoor Panels V16 7\" & 15\" (incl. SIPLUS variants) (All versions < V16 Update 4), SIMATIC HMI Comfort Panels V15 4\" - 22\" (incl. SIPLUS variants) (All versions < V15.1 Update 6), SIMATIC HMI Comfort Panels V16 4\" - 22\" (incl. SIPLUS variants) (All versions < V16 Update 4), SIMATIC HMI KTP Mobile Panels V15 KTP400F, KTP700, KTP700F, KTP900 and KTP900F (All versions < V15.1 Update 6), SIMATIC HMI KTP Mobile Panels V16 KTP400F, KTP700, KTP700F, KTP900 and KTP900F (All versions < V16 Update 4), SIMATIC WinCC Runtime Advanced V15 (All versions < V15.1 Update 6), SIMATIC WinCC Runtime Advanced V16 (All versions < V16 Update 4). SmartVNC has an out-of-bounds memory access vulnerability that could be triggered on the client side when sending data from the server, which could result in a Denial-of-Service condition. |
14 Sep 2021, 11:15
Type | Values Removed | Values Added |
---|---|---|
Summary | A vulnerability has been identified in SIMATIC HMI Comfort Outdoor Panels V15 7\" & 15\" (incl. SIPLUS variants) (All versions < V15 SP1 Update 6), SIMATIC HMI Comfort Outdoor Panels V16 7\" & 15\" (incl. SIPLUS variants) (All versions < V16 Update 4), SIMATIC HMI Comfort Panels V15 4\" - 22\" (incl. SIPLUS variants) (All versions < V15 SP1 Update 6), SIMATIC HMI Comfort Panels V16 4\" - 22\" (incl. SIPLUS variants) (All versions < V16 Update 4), SIMATIC HMI KTP Mobile Panels V15 KTP400F, KTP700, KTP700F, KTP900 and KTP900F (All versions < V15 SP1 Update 6), SIMATIC HMI KTP Mobile Panels V16 KTP400F, KTP700, KTP700F, KTP900 and KTP900F (All versions < V16 Update 4), SIMATIC WinCC Runtime Advanced V15 (All versions < V15 SP1 Update 6), SIMATIC WinCC Runtime Advanced V16 (All versions < V16 Update 4). SmartVNC has an out-of-bounds memory access vulnerability that could be triggered on the client side when sending data from the server, which could result in a Denial-of-Service condition. |
21 May 2021, 13:14
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : 5.0
v3 : 7.5 |
References | (MISC) https://cert-portal.siemens.com/productcert/pdf/ssa-538778.pdf - Vendor Advisory | |
References | (MISC) https://us-cert.cisa.gov/ics/advisories/icsa-21-131-12 - Third Party Advisory, US Government Resource | |
CPE | cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp400f_firmware:16:-:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_7\"_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:siemens:simatic_hmi_ktp_mobile_panels_ktp400f:-:*:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900f_firmware:16:-:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp400f_firmware:*:*:*:*:*:*:*:* cpe:2.3:a:siemens:simatic_wincc_runtime_advanced:16:update3:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_panels_22\"_firmware:16:-:*:*:*:*:*:* cpe:2.3:h:siemens:simatic_hmi_comfort_outdoor_panels_15\":-:*:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_7\"_firmware:16:-:*:*:*:*:*:* cpe:2.3:h:siemens:simatic_hmi_ktp_mobile_panels_ktp900f:-:*:*:*:*:*:*:* cpe:2.3:a:siemens:simatic_wincc_runtime_advanced:16:-:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_panels_4\"_firmware:16:-:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_15\"_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700_firmware:16:-:*:*:*:*:*:* cpe:2.3:h:siemens:simatic_hmi_comfort_outdoor_panels_7\":-:*:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700f_firmware:16:-:*:*:*:*:*:* cpe:2.3:a:siemens:simatic_wincc_runtime_advanced:16:update2:*:*:*:*:*:* cpe:2.3:h:siemens:simatic_hmi_ktp_mobile_panels_ktp700:-:*:*:*:*:*:*:* cpe:2.3:a:siemens:simatic_wincc_runtime_advanced:*:*:*:*:*:*:*:* cpe:2.3:a:siemens:simatic_wincc_runtime_advanced:16:update1:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_outdoor_panels_15\"_firmware:16:-:*:*:*:*:*:* cpe:2.3:h:siemens:simatic_hmi_ktp_mobile_panels_ktp700f:-:*:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700f_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:siemens:simatic_hmi_comfort_panels_22\":-:*:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_panels_22\"_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:siemens:simatic_hmi_ktp_mobile_panels_ktp900:-:*:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp700_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_comfort_panels_4\"_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900f_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:siemens:simatic_hmi_comfort_panels_4\":-:*:*:*:*:*:*:* cpe:2.3:o:siemens:simatic_hmi_ktp_mobile_panels_ktp900_firmware:16:-:*:*:*:*:*:* |
17 May 2021, 21:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
CWE | CWE-788 | |
Summary | SmartVNC has an out-of-bounds memory access vulnerability that could be triggered on the client side when sending data from the server, which could result in a denial-of-service condition on the SIMATIC HMIs/WinCC Products SIMATIC HMI Comfort Outdoor Panels 7’ and 15’ (incl. SIPLUS variants), SIMATIC HMI Comfort Panels 4’to 22’ (incl. SIPLUS variants), SIMATIC HMI KTP Mobile Panels KTP400F, KTP700, KTP700F, KTP900, and KTP900F, SIMATIC WinCC Runtime Advanced (All versions prior to v16 Update 4). |
12 May 2021, 14:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Published : 2021-05-12 14:15
Updated : 2023-12-10 13:55
NVD link : CVE-2021-25661
Mitre link : CVE-2021-25661
CVE.ORG link : CVE-2021-25661
JSON object : View
siemens
- simatic_hmi_ktp_mobile_panels_ktp700
- simatic_hmi_ktp_mobile_panels_ktp900f_firmware
- simatic_hmi_comfort_outdoor_panels_15\"
- simatic_hmi_ktp_mobile_panels_ktp900f
- simatic_hmi_comfort_outdoor_panels_7\"_firmware
- simatic_hmi_comfort_outdoor_panels_7\"
- simatic_hmi_comfort_panels_4\"
- simatic_hmi_comfort_panels_22\"_firmware
- simatic_hmi_ktp_mobile_panels_ktp400f_firmware
- simatic_hmi_ktp_mobile_panels_ktp700f
- simatic_wincc_runtime_advanced
- simatic_hmi_ktp_mobile_panels_ktp900_firmware
- simatic_hmi_comfort_outdoor_panels_15\"_firmware
- simatic_hmi_ktp_mobile_panels_ktp900
- simatic_hmi_ktp_mobile_panels_ktp400f
- simatic_hmi_ktp_mobile_panels_ktp700_firmware
- simatic_hmi_ktp_mobile_panels_ktp700f_firmware
- simatic_hmi_comfort_panels_4\"_firmware
- simatic_hmi_comfort_panels_22\"
Access of Memory Location After End of Buffer