CVE Published: 10/08/2022 |
CVE Updated: 04/08/2024 |
CVE Year: 2021 Source: siemens |
Vendor: Siemens |
Product: CP-8000 MASTER MODULE WITH I/O -25/+70°C Status : PUBLISHED
CVE-2021-46304 Description
A vulnerability has been identified in CP-8000 MASTER MODULE WITH I/O -25/+70°C (All versions), CP-8000 MASTER MODULE WITH I/O -40/+70°C (All versions), CP-8021 MASTER MODULE (All versions), CP-8022 MASTER MODULE WITH GPRS (All versions). The component allows to activate a web server module which provides unauthenticated access to its web pages. This could allow an attacker to retrieve debug-level information from the component such as internal network topology or connected systems.