// For flags

CVE-2024-37994

 

Severity Score

5.3
*CVSS v4

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

Track
*SSVC
Descriptions

A vulnerability has been identified in SIMATIC Reader RF610R CMIIT (6GT2811-6BC10-2AA0) (All versions < V4.2), SIMATIC Reader RF610R ETSI (6GT2811-6BC10-0AA0) (All versions < V4.2), SIMATIC Reader RF610R FCC (6GT2811-6BC10-1AA0) (All versions < V4.2), SIMATIC Reader RF615R CMIIT (6GT2811-6CC10-2AA0) (All versions < V4.2), SIMATIC Reader RF615R ETSI (6GT2811-6CC10-0AA0) (All versions < V4.2), SIMATIC Reader RF615R FCC (6GT2811-6CC10-1AA0) (All versions < V4.2), SIMATIC Reader RF650R ARIB (6GT2811-6AB20-4AA0) (All versions < V4.2), SIMATIC Reader RF650R CMIIT (6GT2811-6AB20-2AA0) (All versions < V4.2), SIMATIC Reader RF650R ETSI (6GT2811-6AB20-0AA0) (All versions < V4.2), SIMATIC Reader RF650R FCC (6GT2811-6AB20-1AA0) (All versions < V4.2), SIMATIC Reader RF680R ARIB (6GT2811-6AA10-4AA0) (All versions < V4.2), SIMATIC Reader RF680R CMIIT (6GT2811-6AA10-2AA0) (All versions < V4.2), SIMATIC Reader RF680R ETSI (6GT2811-6AA10-0AA0) (All versions < V4.2), SIMATIC Reader RF680R FCC (6GT2811-6AA10-1AA0) (All versions < V4.2), SIMATIC Reader RF685R ARIB (6GT2811-6CA10-4AA0) (All versions < V4.2), SIMATIC Reader RF685R CMIIT (6GT2811-6CA10-2AA0) (All versions < V4.2), SIMATIC Reader RF685R ETSI (6GT2811-6CA10-0AA0) (All versions < V4.2), SIMATIC Reader RF685R FCC (6GT2811-6CA10-1AA0) (All versions < V4.2), SIMATIC RF1140R (6GT2831-6CB00) (All versions < V1.1), SIMATIC RF1170R (6GT2831-6BB00) (All versions < V1.1), SIMATIC RF166C (6GT2002-0EE20) (All versions < V2.2), SIMATIC RF185C (6GT2002-0JE10) (All versions < V2.2), SIMATIC RF186C (6GT2002-0JE20) (All versions < V2.2), SIMATIC RF186CI (6GT2002-0JE50) (All versions < V2.2), SIMATIC RF188C (6GT2002-0JE40) (All versions < V2.2), SIMATIC RF188CI (6GT2002-0JE60) (All versions < V2.2), SIMATIC RF360R (6GT2801-5BA30) (All versions < V2.2). The affected application contains a hidden configuration item to enable debug functionality. This could allow an attacker to gain insight into the internal configuration of the deployment.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Attack Requirements
None
Privileges Required
Low
User Interaction
None
System
Vulnerable | Subsequent
Confidentiality
None
None
Integrity
Low
None
Availability
None
None
Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
Low
Availability
None
Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
Low
Availability
None
Attack Vector
Network
Attack Complexity
Low
Authentication
Single
Confidentiality
Complete
Integrity
Partial
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:Track
Exploitation
None
Automatable
No
Tech. Impact
Partial
* Organization's Worst-case Scenario
Timeline
  • 2024-06-11 CVE Reserved
  • 2024-09-10 CVE Published
  • 2024-09-10 CVE Updated
  • 2024-09-19 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-912: Hidden Functionality
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Siemens
Search vendor "Siemens"
Simatic Reader Rf610r Cmiit Firmware
Search vendor "Siemens" for product "Simatic Reader Rf610r Cmiit Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf610r Etsi Firmware
Search vendor "Siemens" for product "Simatic Reader Rf610r Etsi Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf610r Fcc Firmware
Search vendor "Siemens" for product "Simatic Reader Rf610r Fcc Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf615r Cmiit Firmware
Search vendor "Siemens" for product "Simatic Reader Rf615r Cmiit Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf615r Etsi Firmware
Search vendor "Siemens" for product "Simatic Reader Rf615r Etsi Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf615r Fcc Firmware
Search vendor "Siemens" for product "Simatic Reader Rf615r Fcc Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf650r Arib Firmware
Search vendor "Siemens" for product "Simatic Reader Rf650r Arib Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf650r Cmiit Firmware
Search vendor "Siemens" for product "Simatic Reader Rf650r Cmiit Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf650r Etsi Firmware
Search vendor "Siemens" for product "Simatic Reader Rf650r Etsi Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf650r Fcc Firmware
Search vendor "Siemens" for product "Simatic Reader Rf650r Fcc Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf680r Arib Firmware
Search vendor "Siemens" for product "Simatic Reader Rf680r Arib Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf680r Cmiit Firmware
Search vendor "Siemens" for product "Simatic Reader Rf680r Cmiit Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf680r Etsi Firmware
Search vendor "Siemens" for product "Simatic Reader Rf680r Etsi Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf680r Fcc Firmware
Search vendor "Siemens" for product "Simatic Reader Rf680r Fcc Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf685r Arib Firmware
Search vendor "Siemens" for product "Simatic Reader Rf685r Arib Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf685r Cmiit Firmware
Search vendor "Siemens" for product "Simatic Reader Rf685r Cmiit Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf685r Etsi Firmware
Search vendor "Siemens" for product "Simatic Reader Rf685r Etsi Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Reader Rf685r Fcc Firmware
Search vendor "Siemens" for product "Simatic Reader Rf685r Fcc Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Rf1140r Firmware
Search vendor "Siemens" for product "Simatic Rf1140r Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Rf1170r Firmware
Search vendor "Siemens" for product "Simatic Rf1170r Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Rf166c Firmware
Search vendor "Siemens" for product "Simatic Rf166c Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Rf185c Firmware
Search vendor "Siemens" for product "Simatic Rf185c Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Rf186c Firmware
Search vendor "Siemens" for product "Simatic Rf186c Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Rf186ci Firmware
Search vendor "Siemens" for product "Simatic Rf186ci Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Rf188c Firmware
Search vendor "Siemens" for product "Simatic Rf188c Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Rf188ci Firmware
Search vendor "Siemens" for product "Simatic Rf188ci Firmware"
*-
Affected
Siemens
Search vendor "Siemens"
Simatic Rf360r Firmware
Search vendor "Siemens" for product "Simatic Rf360r Firmware"
*-
Affected