CVE-2021-27388
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
SINAMICS medium voltage routable products are affected by a vulnerability in the Sm@rtServer component for remote access that could allow an unauthenticated attacker to cause a denial-of-service condition, and/or execution of limited configuration modifications and/or execution of limited control commands on the SINAMICS Medium Voltage Products, Remote Access (SINAMICS SL150: All versions, SINAMICS SM150: All versions, SINAMICS SM150i: All versions).
Los productos enrutables de tensión media SINAMICS están afectados por una vulnerabilidad en el componente Sm@rtServer para el acceso remoto que podría permitir a un atacante no autenticado causar una condición de denegación de servicio, y/o una ejecución de modificaciones de configuración limitadas y/o la ejecución de comandos de control limitados en los productos de media tensión SINAMICS, acceso remoto (SINAMICS SL150: Todas las versiones, SINAMICS SM150: Todas las versiones, SINAMICS SM150i: Todas las versiones)
CVSS Scores
SSVC
- Decision:-
Timeline
- 2021-02-18 CVE Reserved
- 2021-06-15 CVE Published
- 2024-08-03 CVE Updated
- 2024-10-18 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-20: Improper Input Validation
CAPEC
References (1)
URL | Tag | Source |
---|---|---|
https://us-cert.cisa.gov/ics/advisories/icsa-21-131-04 | Not Applicable |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Siemens Search vendor "Siemens" | Sinamics Sl150 Firmware Search vendor "Siemens" for product "Sinamics Sl150 Firmware" | * | - |
Affected
| in | Siemens Search vendor "Siemens" | Sinamics Sl150 Search vendor "Siemens" for product "Sinamics Sl150" | - | - |
Safe
|
Siemens Search vendor "Siemens" | Sinamics Sm150 Firmware Search vendor "Siemens" for product "Sinamics Sm150 Firmware" | * | - |
Affected
| in | Siemens Search vendor "Siemens" | Sinamics Sm150 Search vendor "Siemens" for product "Sinamics Sm150" | - | - |
Safe
|
Siemens Search vendor "Siemens" | Sinamics Sm150i Firmware Search vendor "Siemens" for product "Sinamics Sm150i Firmware" | * | - |
Affected
| in | Siemens Search vendor "Siemens" | Sinamics Sm150i Search vendor "Siemens" for product "Sinamics Sm150i" | - | - |
Safe
|