The vendor explicitly identifies these products as affected by this CVE.
- CP-8031 MASTER MODULE (6MF2803-1AA00)
- CP-8050 MASTER MODULE (6MF2805-0AA00)
- Summary
- Affected devices are vulnerable to command injection via the web server port 443/tcp, if the parameter “Remote Operation” is enabled. The parameter is disabled by default. The vulnerability could allow an unauthenticated remote attacker to perform arbitrary code execution on the device.
- Remediation
- Update to CPCI85 V05 or later version
