// For flags

CVE-2024-37990

 

Severity Score

7.0
*CVSS v4

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

Track
*SSVC
Descriptions

A vulnerability has been identified in SIMATIC Reader RF610R CMIIT (6GT2811-6BC10-2AA0) (All versions < V4.2), SIMATIC Reader RF610R ETSI (6GT2811-6BC10-0AA0) (All versions < V4.2), SIMATIC Reader RF610R FCC (6GT2811-6BC10-1AA0) (All versions < V4.2), SIMATIC Reader RF615R CMIIT (6GT2811-6CC10-2AA0) (All versions < V4.2), SIMATIC Reader RF615R ETSI (6GT2811-6CC10-0AA0) (All versions < V4.2), SIMATIC Reader RF615R FCC (6GT2811-6CC10-1AA0) (All versions < V4.2), SIMATIC Reader RF650R ARIB (6GT2811-6AB20-4AA0) (All versions < V4.2), SIMATIC Reader RF650R CMIIT (6GT2811-6AB20-2AA0) (All versions < V4.2), SIMATIC Reader RF650R ETSI (6GT2811-6AB20-0AA0) (All versions < V4.2), SIMATIC Reader RF650R FCC (6GT2811-6AB20-1AA0) (All versions < V4.2), SIMATIC Reader RF680R ARIB (6GT2811-6AA10-4AA0) (All versions < V4.2), SIMATIC Reader RF680R CMIIT (6GT2811-6AA10-2AA0) (All versions < V4.2), SIMATIC Reader RF680R ETSI (6GT2811-6AA10-0AA0) (All versions < V4.2), SIMATIC Reader RF680R FCC (6GT2811-6AA10-1AA0) (All versions < V4.2), SIMATIC Reader RF685R ARIB (6GT2811-6CA10-4AA0) (All versions < V4.2), SIMATIC Reader RF685R CMIIT (6GT2811-6CA10-2AA0) (All versions < V4.2), SIMATIC Reader RF685R ETSI (6GT2811-6CA10-0AA0) (All versions < V4.2), SIMATIC Reader RF685R FCC (6GT2811-6CA10-1AA0) (All versions < V4.2), SIMATIC RF1140R (6GT2831-6CB00) (All versions < V1.1), SIMATIC RF1170R (6GT2831-6BB00) (All versions < V1.1), SIMATIC RF166C (6GT2002-0EE20) (All versions < V2.2), SIMATIC RF185C (6GT2002-0JE10) (All versions < V2.2), SIMATIC RF186C (6GT2002-0JE20) (All versions < V2.2), SIMATIC RF186CI (6GT2002-0JE50) (All versions < V2.2), SIMATIC RF188C (6GT2002-0JE40) (All versions < V2.2), SIMATIC RF188CI (6GT2002-0JE60) (All versions < V2.2), SIMATIC RF360R (6GT2801-5BA30) (All versions < V2.2). The affected applications contain configuration files which can be modified. An attacker with privilege access can modify these files and enable features that are not released for this device.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Attack Requirements
None
Privileges Required
High
User Interaction
None
System
Vulnerable | Subsequent
Confidentiality
None
None
Integrity
High
None
Availability
High
None
Attack Vector
Network
Attack Complexity
Low
Privileges Required
High
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
High
Availability
High
Attack Vector
Network
Attack Complexity
Low
Authentication
Multiple
Confidentiality
None
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:Track
Exploitation
None
Automatable
No
Tech. Impact
Partial
* Organization's Worst-case Scenario
Timeline
  • 2024-06-11 CVE Reserved
  • 2024-09-10 CVE Published
  • 2024-09-10 CVE Updated
  • 2024-09-19 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-912: Hidden Functionality
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Siemens
Search vendor "Siemens"
Simatic Reader Rf610r Cmiit Firmware
Search vendor "Siemens" for product "Simatic Reader Rf610r Cmiit Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf610r Etsi Firmware
Search vendor "Siemens" for product "Simatic Reader Rf610r Etsi Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf610r Fcc Firmware
Search vendor "Siemens" for product "Simatic Reader Rf610r Fcc Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf615r Cmiit Firmware
Search vendor "Siemens" for product "Simatic Reader Rf615r Cmiit Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf615r Etsi Firmware
Search vendor "Siemens" for product "Simatic Reader Rf615r Etsi Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf615r Fcc Firmware
Search vendor "Siemens" for product "Simatic Reader Rf615r Fcc Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf650r Arib Firmware
Search vendor "Siemens" for product "Simatic Reader Rf650r Arib Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf650r Cmiit Firmware
Search vendor "Siemens" for product "Simatic Reader Rf650r Cmiit Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf650r Etsi Firmware
Search vendor "Siemens" for product "Simatic Reader Rf650r Etsi Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf650r Fcc Firmware
Search vendor "Siemens" for product "Simatic Reader Rf650r Fcc Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf680r Arib Firmware
Search vendor "Siemens" for product "Simatic Reader Rf680r Arib Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf680r Cmiit Firmware
Search vendor "Siemens" for product "Simatic Reader Rf680r Cmiit Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf680r Etsi Firmware
Search vendor "Siemens" for product "Simatic Reader Rf680r Etsi Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf680r Fcc Firmware
Search vendor "Siemens" for product "Simatic Reader Rf680r Fcc Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf685r Arib Firmware
Search vendor "Siemens" for product "Simatic Reader Rf685r Arib Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf685r Cmiit Firmware
Search vendor "Siemens" for product "Simatic Reader Rf685r Cmiit Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf685r Etsi Firmware
Search vendor "Siemens" for product "Simatic Reader Rf685r Etsi Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf685r Fcc Firmware
Search vendor "Siemens" for product "Simatic Reader Rf685r Fcc Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Rf1140r Firmware
Search vendor "Siemens" for product "Simatic Rf1140r Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Rf1170r Firmware
Search vendor "Siemens" for product "Simatic Rf1170r Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Rf166c Firmware
Search vendor "Siemens" for product "Simatic Rf166c Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Rf185c Firmware
Search vendor "Siemens" for product "Simatic Rf185c Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Rf186c Firmware
Search vendor "Siemens" for product "Simatic Rf186c Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Rf186ci Firmware
Search vendor "Siemens" for product "Simatic Rf186ci Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Rf188c Firmware
Search vendor "Siemens" for product "Simatic Rf188c Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Rf188ci Firmware
Search vendor "Siemens" for product "Simatic Rf188ci Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Rf360r Firmware
Search vendor "Siemens" for product "Simatic Rf360r Firmware"
*-
Affected