Siemens SIMATIC S7-1200 CPU 1211C
cpe:2.3:h:siemens:s7-1200_cpu_1211c:*:*:*:*:*:*:*, +5 more
A Cross-Site Request Forgery (CSRF) vulnerability has been identified in the web interface of SIMATIC S7-1200 CPUs prior to version 4.7, including SIPLUS variants. This vulnerability allows an unauthenticated attacker to manipulate the CPU mode by deceiving a legitimate user with the necessary permissions to click on a malicious link.
Exploitation of this vulnerability could lead to unauthorized changes in the CPU mode, potentially disrupting operations or causing unintended behavior in automated processes.
Users are advised to update to version 4.7 or later. Specific product remediations can be found in the Siemens Security Advisory SSA-717113.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.