ID

VAR-202410-0118


CVE

CVE-2024-46886


TITLE

Siemens Multiple Products URL Redirection Vulnerability

Trust: 0.6

sources: CNVD: CNVD-2024-40007

DESCRIPTION

The web server of affected devices does not properly validate input that is used for a user redirection. This could allow an attacker to make the server redirect the legitimate user to an attacker-chosen URL. For a successful exploit, the legitimate user must actively click on an attacker-crafted link. SIMATIC Drive Controllers are designed for the automation of production machines and combine the functionality of the SIMATIC S7-1500 CPU and SINAMICS S120 drive control. The SIMATIC ET 200SP Open Controller is a PC-based version of the SIMATIC S7-1500 controller, including optional visualization as well as central I/O in a compact device. Both the SIMATIC S7-1200 CPU and the SIMATIC S7-1500 CPU are designed for discrete and continuous control in industrial environments such as the global manufacturing, food and beverage, and chemical industries. The SIMATIC S7-1500 MFP CPUs offer the functionality of standard S7-1500 CPUs and can run C/C++ code in the CPU runtime to execute your own functions/algorithms implemented in C/C++. The SIMATIC S7-1500 Software Controller is a SIMATIC software controller for PC-based automation solutions. SIMATIC S7-PLCSIM Advanced simulates S7-1200, S7-1500 and some other PLC derivatives

Trust: 1.44

sources: NVD: CVE-2024-46886 // CNVD: CNVD-2024-40007

IOT TAXONOMY

category:['ICS']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2024-40007

AFFECTED PRODUCTS

vendor:siemensmodel:simatic s7-plcsim advancedscope: - version: -

Trust: 0.6

vendor:siemensmodel:simatic et 200sp open controller cpu 1515sp pc2scope: - version: -

Trust: 0.6

vendor:siemensmodel:simatic s7-1500 cpu familyscope: - version: -

Trust: 0.6

vendor:siemensmodel:simatic s7-1500 software controllerscope:eqversion:v3

Trust: 0.6

vendor:siemensmodel:simatic drive controller cpu 1504d tfscope:ltversion:3.1.4

Trust: 0.6

vendor:siemensmodel:simatic drive controller cpu 1507d tfscope:ltversion:3.1.4

Trust: 0.6

vendor:siemensmodel:simatic s7-1200 cpu familyscope:eqversion:v4

Trust: 0.6

vendor:siemensmodel:simatic s7-1500 software controllerscope:eqversion:v2

Trust: 0.6

sources: CNVD: CNVD-2024-40007

CVSS

SEVERITY

CVSSV2

CVSSV3

productcert@siemens.com: CVE-2024-46886
value: MEDIUM

Trust: 1.0

CNVD: CNVD-2024-40007
value: MEDIUM

Trust: 0.6

CNVD: CNVD-2024-40007
severity: MEDIUM
baseScore: 5.0
vectorString: AV:N/AC:L/AU:N/C:N/I:P/A:N
accessVector: NETWORK
accessComplexity: LOW
authentication: NONE
confidentialityImpact: NONE
integrityImpact: PARTIAL
availabilityImpact: NONE
exploitabilityScore: 10.0
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

productcert@siemens.com: CVE-2024-46886
baseSeverity: MEDIUM
baseScore: 4.7
vectorString: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N
attackVector: NETWORK
attackComplexity: LOW
privilegesRequired: NONE
userInteraction: REQUIRED
scope: CHANGED
confidentialityImpact: NONE
integrityImpact: LOW
availabilityImpact: NONE
exploitabilityScore: 2.8
impactScore: 1.4
version: 3.1

Trust: 1.0

sources: CNVD: CNVD-2024-40007 // NVD: CVE-2024-46886

PROBLEMTYPE DATA

problemtype:CWE-601

Trust: 1.0

sources: NVD: CVE-2024-46886

PATCH

title:Patch for Siemens Multiple Products URL Redirection Vulnerabilityurl:https://www.cnvd.org.cn/patchInfo/show/598706

Trust: 0.6

sources: CNVD: CNVD-2024-40007

EXTERNAL IDS

db:NVDid:CVE-2024-46886

Trust: 1.6

db:SIEMENSid:SSA-876787

Trust: 1.6

db:CNVDid:CNVD-2024-40007

Trust: 0.6

sources: CNVD: CNVD-2024-40007 // NVD: CVE-2024-46886

REFERENCES

url:https://cert-portal.siemens.com/productcert/html/ssa-876787.html

Trust: 1.6

sources: CNVD: CNVD-2024-40007 // NVD: CVE-2024-46886

SOURCES

db:CNVDid:CNVD-2024-40007
db:NVDid:CVE-2024-46886

LAST UPDATE DATE

2024-10-18T03:55:34.708000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2024-40007date:2024-10-10T00:00:00
db:NVDid:CVE-2024-46886date:2024-10-10T12:56:30.817

SOURCES RELEASE DATE

db:CNVDid:CNVD-2024-40007date:2024-10-10T00:00:00
db:NVDid:CVE-2024-46886date:2024-10-08T09:15:16.093