VYPR

Simatic Easie Core Package

by Siemens Foundation

CVEs (2)

  • CVE-2021-44222CriJul 12, 2022
    risk 0.59cvss 9.1epss 0.01

    A vulnerability has been identified in SIMATIC eaSie Core Package (All versions < V22.00). The underlying MQTT service of affected systems does not perform authentication in the default configuration. This could allow an unauthenticated remote attacker to send arbitrary messages…

  • CVE-2021-44221HigJul 12, 2022
    risk 0.49cvss 7.5epss 0.01

    A vulnerability has been identified in SIMATIC eaSie Core Package (All versions < V22.00). The affected systems do not properly validate input that is sent to the underlying message passing framework. This could allow an remote attacker to trigger a denial of service of the…