https://cert-portal.siemens.com/productcert/html/ssa-054046.html
https://www.cisa.gov/news-events/ics-advisories/icsa-24-284-10
Severity: Medium
ID: 502652
Version: 1.4
Type: remote
Family: Tenable.ot
Published: 10/22/2024
Updated: 12/12/2024
Supported Sensors: Tenable OT Security
Risk Factor: Low
Score: 1.4
Risk Factor: Medium
Base Score: 5.3
Temporal Score: 4.8
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Temporal Vector: CVSS:3.0/E:P/RL:O/RC:C
CPE: cpe:/o:siemens:siplus_et_200sp_cpu_firmware, cpe:/o:siemens:simatic_et_200sp_open_controller_cpu_1515sp_pc2_firmware, cpe:/o:siemens:simatic_s7-1500_et_200pro_cpu_firmware, cpe:/o:siemens:simatic_s7-1500_cpu_firmware, cpe:/o:siemens:siplus_s7-1500_cpu_firmware:3.1.4, cpe:/o:siemens:siplus_s7-1500_cpu_firmware, cpe:/o:siemens:simatic_drive_controller_cpu_firmware, cpe:/o:siemens:simatic_s7-1500_cpu_firmware:3.1.4
Required KB Items: Tenable.ot/Siemens
Exploit Available: true
Exploit Ease: Exploits are available
Patch Publication Date: 10/8/2024
Vulnerability Publication Date: 10/8/2024
CVE: CVE-2024-46887
CWE: 288
ICSA: 24-284-10