Description

A vulnerability has been identified in SIMATIC S7-1200 CPU V1 family (incl. SIPLUS variants) (All versions < V2.0.2), SIMATIC S7-1200 CPU V2 family (incl. SIPLUS variants) (All versions < V2.0.2). Affected controllers are vulnerable to capture-replay in the communication with the engineering software. This could allow an on-path attacker between the engineering software and the controller to execute any previously recorded commands at a later time (e.g. set the controller to STOP), regardless whether or not the controller had a password configured.

INFO

Published Date :

2025-10-14T09:14:55.159Z

Last Modified :

2025-10-14T18:58:30.327Z

Source :

siemens
AFFECTED PRODUCTS

The following products are affected by CVE-2011-20002 vulnerability.

Vendors Products
Siemens
  • Simatic
  • Simatic S7-1200
  • Simatic S7-1200 Cpu
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2011-20002.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
VS Confidentiality
VS Integrity
VS Availability
SS Confidentiality
SS Integrity
SS Availability
Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact