Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Telnet service of the SIMATIC HMI Comfort Panels system component in affected products does not require authentication, which may allow a remote attacker to gain access to the device if the service is enabled. Telnet is disabled by default on the SINAMICS Medium Voltage Products (SINAMICS SL150: All versions, SINAMICS SM150: All versions, SINAMICS SM150i: All versions).
CVSS Information
N/A
Vulnerability Type
关键功能的认证机制缺失
Vulnerability Title
Siemens SINAMICS SL150 访问控制错误漏洞
Vulnerability Description
Siemens SINAMICS SL150是德国西门子(Siemens)公司的一个应用程序。用于高转矩慢速同步和感应电动机的循环变频器。 多款Siemens设备存在访问控制错误漏洞。该漏洞源于系统组件的Telnet服务不需要身份验证,如果启用了该服务,则它可能允许远程攻击者访问设备。以下产品及版本受到影响:SINAMICS SL150、SINAMICS SM150、SINAMICS SM150i。
CVSS Information
N/A
Vulnerability Type
N/A