← Vulnerability feed

Vulnerability record · CVE-2021-42029 · published 12 April 2022

CVE-2021-42029: Siemens simatic step 7 improper access control vulnerability

Siemens · Simatic Step 7

A vulnerability has been identified in SIMATIC STEP 7 (TIA Portal) V15 (All versions), SIMATIC STEP 7 (TIA Portal) V16 (All versions < V16 Update 5), SIMATIC STEP 7 (TIA Portal) V17 (All versions < V17 Update 2). An attacker could achieve privilege escalation on the web server of certain devices due to improper access control vulnerability in the engineering system software. The attacker needs to have direct access to the impacted web server.

7.8 CVSS 3.1 High EPSS 0.24% · top 86.3% CWE-284 · Improper access control
7.8CVSS 3.1 base score, v2 7.2
0.24%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
2References
17 Jun 2026Last modified by NVD

Description

A vulnerability has been identified in SIMATIC STEP 7 (TIA Portal) V15 (All versions), SIMATIC STEP 7 (TIA Portal) V16 (All versions < V16 Update 5), SIMATIC STEP 7 (TIA Portal) V17 (All versions < V17 Update 2). An attacker could achieve privilege escalation on the web server of certain devices due to improper access control vulnerability in the engineering system software. The attacker needs to have direct access to the impacted web server.

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2021-42029 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

8.8CVE-2023-25910Siemens simatic pcs 7 code injection vulnerabilityA vulnerability has been identified in SIMATIC PCS 7 (All versions < V9.1 SP2 UC04), SIMATIC S7-PM (All versions < V5.7 SP1 HF1), SIMATIC S7-PM (All …EPSS 1.0%8.2CVE-2020-7587Siemens opcenter execution discrete uncontrolled resource consumption vulnerabilityA vulnerability has been identified in Opcenter Execution Discrete (All versions < V3.2), Opcenter Execution Foundation (All versions < V3.2), Opcent…EPSS 2.5%7.8CVE-2020-7585Siemens simatic pcs 7 uncontrolled search path element vulnerabilityA vulnerability has been identified in SIMATIC PCS 7 V8.2 and earlier (All versions), SIMATIC PCS 7 V9.0 (All versions < V9.0 SP3), SIMATIC PDM (All …EPSS 0.45%7.8CVE-2020-7586Siemens simatic pcs 7 heap-based buffer overflow vulnerabilityA vulnerability has been identified in SIMATIC PCS 7 V8.2 and earlier (All versions), SIMATIC PCS 7 V9.0 (All versions < V9.0 SP3), SIMATIC PDM (All …EPSS 0.42%6.9CVE-2015-1594Siemens starter vulnerabilityUntrusted search path vulnerability in Siemens SIMATIC ProSave before 13 SP1; SIMATIC CFC before 8.0 SP4 Upd9 and 8.1 before Upd1; SIMATIC STEP 7 bef…EPSS 0.40%6.9CVE-2012-3015Siemens simatic pcs7 vulnerabilityUntrusted search path vulnerability in Siemens SIMATIC STEP7 before 5.5 SP1, as used in SIMATIC PCS7 7.1 SP3 and earlier and other products, allows l…EPSS 0.46%6.8CVE-2015-1601Siemens simatic step 7 vulnerabilitySiemens SIMATIC STEP 7 (TIA Portal) 12 and 13 before 13 SP1 Upd1 allows man-in-the-middle attackers to obtain sensitive information or modify transmi…EPSS 1.4%6.7CVE-2020-7581Siemens opcenter execution discrete unquoted search path vulnerabilityA vulnerability has been identified in Opcenter Execution Discrete (All versions < V3.2), Opcenter Execution Foundation (All versions < V3.2), Opcent…EPSS 0.38%

Source: NIST National Vulnerability Database (record CVE-2021-42029), CISA KEV, FIRST EPSS (scores of 2026-10-05). This page is refreshed as NVD updates the record.