CVE-2023-33921

MEDIUM

CP-8031/CP-8050 <CPCI85 V05 - Info Disclosure

Title source: llm
STIX 2.1

Description

A vulnerability has been identified in CP-8031 MASTER MODULE (All versions < CPCI85 V05), CP-8050 MASTER MODULE (All versions < CPCI85 V05). The affected devices contain an exposed UART console login interface. An attacker with direct physical access could try to bruteforce or crack the root password to login to the device.

Scores

CVSS v3 6.8
EPSS 0.0017
EPSS Percentile 37.9%
Attack Vector PHYSICAL
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact total

Details

CWE
CWE-749
Status published
Products (1)
siemens/cpci85_firmware < v05
Published Jun 13, 2023
Tracked Since Feb 18, 2026