A vulnerability has been identified in SIMATIC CN 4100 (All versions < V3.0). The affected device contains hard coded password which is used for the privileged system user `root` and for the boot loader `GRUB` by default . An attacker who manages to crack the password hash gains root access to the device.
2024-05-14T16:17:11.640
2025-08-26T20:16:23.190
Analyzed
CVSSv3.1: 10.0 (CRITICAL)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Operating System | siemens | simatic_cn_4100_firmware | < 3.0 | Yes |
| Hardware | siemens | simatic_cn_4100 | - | No |