cbcvebase.
CVE-2023-33920
published 2023-06-13

CVE-2023-33920: A vulnerability has been identified in CP-8031 MASTER MODULE (All versions < CPCI85 V05), CP-8050 MASTER MODULE (All versions < CPCI85 V05). The affected…

PriorityP433medium6.8CVSS 3.1
AVPACLPRNUINSUCHIHAH
EPSS
0.36%
28.3th percentile
A vulnerability has been identified in CP-8031 MASTER MODULE (All versions < CPCI85 V05), CP-8050 MASTER MODULE (All versions < CPCI85 V05). The affected devices contain the hash of the root password in a hard-coded form, which could be exploited for UART console login to the device. An attacker with direct physical access could exploit this vulnerability.

Affected

3 ranges
VendorProductVersion rangeFixed in
siemenscp-8031_master_module
siemenscp-8050_master_module
siemenscpci85_firmware< v05v05
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.