QID 591287
Date Published: 2023-01-13
QID 591287: Siemens SICAM A8000 Web Server Module Improper Access Control Vulnerability (ICSA-22-223-05, SSA-185638)
AFFECTED PRODUCTS
CP-8000 MASTER MODULE WITH I/O -25/+70C (6MF2101-0AB10-0AA0): All Versions
CP-8000 MASTER MODULE WITH I/O -40/+70C (6MF2101-1AB10-0AA0): All Versions
CP-8021 MASTER MODULE (6MF2802-1AA00): All Versions
CP-8022 MASTER MODULE WITH GPRS (6MF2802-2AA00): All Versions
The affected protocol firmware utilized with the web server modules includes the following:
AGPMT0 (AGP Master)
DNPiT1 (DNP3 TCP/IP Server)
DNPiT2 (DNP3 TCP/IP Client)
DNPMT0 (DNP3 Master seriell)
DNPST0 (DNP3 Slave seriell)
ET83 (61850 Ed.1)
ET85 (61850 Ed.2)
MBCiT0 (MODBUS TCP/IP Client)
MBSiT0 (MODBUS TCP/IP Server)
MODMT2 (MODBUS Master serial)
OPUPT0 (OPCUA Pub/Sub)
OPUPT1 (Mindconnect)
QID Detection Logic:
This QID checks for the Vulnerable version of Siemens SICAM A8000 Web Server Module using passive scanning
Successful exploitation of this vulnerability could allow unauthenticated access to the web interface of the affected web server.
Customers are advised to refer to CERT MITIGATIONS section ICSA-22-223-05 or Siemens MITIGATIONS section SSA-185638 for affected packages and patching details.
- ICSA-22-223-05 -
www.cisa.gov/uscert/ics/advisories/icsa-22-223-05
CVEs related to QID 591287
| Advisory ID | Software | Component | Link |
|---|