High severity7.5NVD Advisory· Published Sep 14, 2021· Updated Jun 17, 2026
CVE-2021-37206
CVE-2021-37206
Description
A vulnerability has been identified in SIPROTEC 5 relays with CPU variants CP050 (All versions < V8.80), SIPROTEC 5 relays with CPU variants CP100 (All versions < V8.80), SIPROTEC 5 relays with CPU variants CP300 (All versions < V8.80). Received webpackets are not properly processed. An unauthenticated remote attacker with access to any of the Ethernet interfaces could send specially crafted packets to force a restart of the target device.
Affected products
7- cpe:2.3:o:siemens:siprotec_5_with_cpu_variant_cp050:*:*:*:*:*:*:*:*Range: <8.80
- cpe:2.3:o:siemens:siprotec_5_with_cpu_variant_cp100:*:*:*:*:*:*:*:*Range: <8.80
- cpe:2.3:o:siemens:siprotec_5_with_cpu_variant_cp300:*:*:*:*:*:*:*:*Range: <8.80
- Range: <V8.80
All versions < V8.80+ 2 more
- (no CPE)range: All versions < V8.80
- (no CPE)range: All versions < V8.80
- (no CPE)range: All versions < V8.80
Patches
Vulnerability mechanics
References
1- cert-portal.siemens.com/productcert/pdf/ssa-500748.pdfnvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.