Publication Date: 2022-04-12
Last Update: 2022-04-12
Current Version: V1.0
CVSS v3.1 Base Score: 6.4

Affected Product and Versions Remediation
SIMATIC STEP 7 (TIA Portal) V15:
All versions
Currently no fix is planned
See recommendations from section Workarounds and Mitigations
SIMATIC STEP 7 (TIA Portal) V16:
All versions < V16 Update 5
Update to V16 Update 5 or later version
https://support.industry.siemens.com/cs/gb/en/view/109775861/
See further recommendations from section Workarounds and Mitigations
SIMATIC STEP 7 (TIA Portal) V17:
All versions < V17 Update 2
Update to V17 Update 2 or later version
https://support.industry.siemens.com/cs/gb/en/view/109784441/
See further recommendations from section Workarounds and Mitigations

CVSS v3.1 Base Score 6.4
CVSS Vector CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:C/C:H/I:L/A:L/E:P/RL:O/RC:C
CWE: CWE-284: Improper Access Control

https://www.siemens.com/cert/advisories