CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.8. See the original NVD description below for full technical details.
CVE
CVE-2021-42029
Severity
HIGH
CVSS
7.8
EPSS
0.23%
Original NVD Description
A vulnerability has been identified in SIMATIC STEP 7 (TIA Portal) V15 (All versions), SIMATIC STEP 7 (TIA Portal) V16 (All versions < V16 Update 5), SIMATIC STEP 7 (TIA Portal) V17 (All versions < V17 Update 2). An attacker could achieve privilege escalation on the web server of certain devices due to improper access control vulnerability in the engineering system software. The attacker needs to have direct access to the impacted web server.
Related CVEs
Other vulnerabilities affecting the same vendor(s)