← Vulnerability feed

Vulnerability record · CVE-2021-37172 · published 10 August 2021

CVE-2021-37172: Siemens simatic s7-1200 cpu firmware improper authentication vulnerability

Siemens · Simatic S7 1200 Cpu Firmware

A vulnerability has been identified in SIMATIC S7-1200 CPU family (incl. SIPLUS variants) (V4.5.0). Affected devices fail to authenticate against configured passwords when provisioned using TIA Portal V13. This could allow an attacker using TIA Portal V13 or later versions to bypass authentication and download arbitrary programs to the PLC. The vulnerability does not occur when TIA Portal V13 SP1 or any later version was used to provision the device.

7.5 CVSS 3.1 High EPSS 0.92% · top 41.0% CWE-287 · Improper authentication
7.5CVSS 3.1 base score, v2 5.0
0.92%EPSS exploitation probability, 30 days
NoNot in CISA KEV
2Affected product versions listed by NVD
2References
17 Jun 2026Last modified by NVD

Description

A vulnerability has been identified in SIMATIC S7-1200 CPU family (incl. SIPLUS variants) (V4.5.0). Affected devices fail to authenticate against configured passwords when provisioned using TIA Portal V13. This could allow an attacker using TIA Portal V13 or later versions to bypass authentication and download arbitrary programs to the PLC. The vulnerability does not occur when TIA Portal V13 SP1 or any later version was used to provision the device.

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2021-37172 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

8.7CVE-2023-28831Siemens simatic cloud connect 7 cc712 firmware integer overflow vulnerabilityThe OPC UA implementations (ANSI C and C++) in affected products contain an integer overflow vulnerability that could cause the application to run in…EPSS 1.1%8.6CVE-2018-11454Siemens simatic step 7 \(tia portal\) incorrect default permissions vulnerabilityA vulnerability has been identified in SIMATIC STEP 7 (TIA Portal) and WinCC (TIA Portal) V10, V11, V12 (All versions), SIMATIC STEP 7 (TIA Portal) a…EPSS 0.44%7.8CVE-2018-11453Siemens simatic step 7 \(tia portal\) incorrect default permissions vulnerabilityA vulnerability has been identified in SIMATIC STEP 7 (TIA Portal) and WinCC (TIA Portal) V10, V11, V12 (All versions), SIMATIC STEP 7 (TIA Portal) a…EPSS 0.36%7.5CVE-2019-10936Siemens dk standard ethernet controller firmware uncontrolled resource consumption vulnerabilityAffected devices improperly handle large amounts of specially crafted UDP packets. This could allow an unauthenticated remote attacker to trigger a d…EPSS 2.1%6.5CVE-2017-6865Siemens pcs 7 improper input validation vulnerabilityA vulnerability has been identified in Primary Setup Tool (PST) (All versions < V4.2 HF1), SIMATIC Automation Tool (All versions < V3.0), SIMATIC NET…EPSS 0.47%6.4CVE-2016-7165Siemens primary setup tool improper access control vulnerabilityA vulnerability has been identified in Primary Setup Tool (PST) (All versions < V4.2 HF1), SIMATIC IT Production Suite (All versions < V7.0 SP1 HFX 2…EPSS 0.38%5.5CVE-2018-13811Siemens simatic step 7 \(tia portal\) information exposure vulnerabilityA vulnerability has been identified in SIMATIC STEP 7 (TIA Portal) (All Versions < V15.1). Password hashes with insufficient computational effort cou…EPSS 0.24%7.5CVE-2026-42018JFrog Artifactory improper authentication leaks anonymous tokenJFrog Artifactory can return an internal anonymous-user token to an unauthenticated caller even when anonymous access is disabled. Because the token …KEVEPSS 9.8%analysed

Source: NIST National Vulnerability Database (record CVE-2021-37172), CISA KEV, FIRST EPSS (scores of 2026-10-05). This page is refreshed as NVD updates the record.