SARA / Free Tools / CVE / CVE-2024-37994

CVE-2024-37994 — A vulnerability has been identified in SIMATIC Reader RF610R CMIIT (6GT2811-6BC1

A vulnerability has been identified in SIMATIC Reader RF610R CMIIT (6GT2811-6BC10-2AA0) (All versions < V4.2), SIMATIC Reader RF610R ETSI (6GT2811-6BC10-0AA0) (All versions < V4.2), SIMATIC Reader RF610R FCC (6GT2811-6BC10-1AA0) (All versions < V4.2), SIMATIC Reader RF61

CVSS
5.3 MEDIUM
EPSS
26.00% (top 51.20%)
CWE
CWE-912
Published
2024-09-10T09:36:40.841Z
Last modified
2024-09-10T15:03:52.417Z
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N

01What is this vulnerability?

A vulnerability has been identified in SIMATIC Reader RF610R CMIIT (6GT2811-6BC10-2AA0) (All versions < V4.2), SIMATIC Reader RF610R ETSI (6GT2811-6BC10-0AA0) (All versions < V4.2), SIMATIC Reader RF610R FCC (6GT2811-6BC10-1AA0) (All versions < V4.2), SIMATIC Reader RF615R CMIIT (6GT2811-6CC10-2AA0) (All versions < V4.2), SIMATIC Reader RF615R ETSI (6GT2811-6CC10-0AA0) (All versions < V4.2)…

02Affected products

VendorProductVersions
SiemensSIMATIC Reader RF610R CMIIT0
SiemensSIMATIC Reader RF610R ETSI0
SiemensSIMATIC Reader RF610R FCC0
SiemensSIMATIC Reader RF615R CMIIT0
SiemensSIMATIC Reader RF615R ETSI0
SiemensSIMATIC Reader RF615R FCC0
SiemensSIMATIC Reader RF650R ARIB0
SiemensSIMATIC Reader RF650R CMIIT0
SiemensSIMATIC Reader RF650R ETSI0
SiemensSIMATIC Reader RF650R FCC0
SiemensSIMATIC Reader RF680R ARIB0
SiemensSIMATIC Reader RF680R CMIIT0
SiemensSIMATIC Reader RF680R ETSI0
SiemensSIMATIC Reader RF680R FCC0
SiemensSIMATIC Reader RF685R ARIB0
SiemensSIMATIC Reader RF685R CMIIT0
SiemensSIMATIC Reader RF685R ETSI0
SiemensSIMATIC Reader RF685R FCC0
SiemensSIMATIC RF1140R0
SiemensSIMATIC RF1170R0
SiemensSIMATIC RF166C0
SiemensSIMATIC RF185C0
SiemensSIMATIC RF186C0
SiemensSIMATIC RF186CI0
SiemensSIMATIC RF188C0
SiemensSIMATIC RF188CI0
SiemensSIMATIC RF360R0

03Active exploitation status

Not currently listed on the CISA Known Exploited Vulnerabilities (KEV) catalog. EPSS is the best forward-looking signal — see the EPSS row above.

04Recommended remediation

05Technical details

For the full vendor write-up, exploit chains, and reference implementations, see the references list in section 09.

06Detection signatures

Open the Sigma generator with a pre-filled prompt for this CVE to draft a starting detection in your stack of choice:

Open in Sigma generator →

07Related CVEs

No directly-cited follow-up CVEs in the KB record for this advisory. The references list in section 09 carries the vendor cross-references.

08Timeline

09References

Want this in your SOAR or SIEM?
SARA's API returns EPSS, CVSS, KEV, and an analyst-grade summary in one call.
Read the API reference →