Severity
Medium
Analysis Summary
CVE-2021-46304
Siemens SICAM devices could allow a remote authenticated attacker to bypass security restrictions, caused by improper access control in the Web server module. An attacker could exploit this vulnerability to retrieve debug-level information from the component such as internal network topology or connected systems.
Impact
- Security Bypass
Indicators Of Compromise
CVE
- CVE-2021-46304
Affected Vendors
Siemens
Affected Products
- Siemens SICAM CP-8000
- Siemens SICAM CP-8021
- Siemens SICAM CP-8022
Remediation
Refer to Siemens Security Advisory for patch, upgrade or suggested workaround information.

