Siemens SIMATIC WinCC before 7.3 Update 10 and 7.4 before Update 1, SIMATIC BATCH before 8.1 SP1 Update 9 as distributed in SIMATIC PCS 7 through 8.1 SP1, SIMATIC OpenPCS 7 before 8.1 Update 3 as distributed in SIMATIC PCS 7 through 8.1 SP1, SIMATIC OpenPCS 7 before 8.2 Update 1 as distributed in SIMATIC PCS 7 8.2, and SIMATIC WinCC Runtime Professional before 13 SP1 Update 9 allow remote attackers to execute arbitrary code via crafted packets.
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HSiemens Simatic Batch
APPSiemens≤ 7.1Siemens Simatic Openpcs 7
APPSiemens≤ 8.1≤ 8.2Siemens Simatic Pcs 7
APPSiemens≤ 8.1≤ 8.2Siemens Simatic Wincc
APPSiemens≤ 7.3≤ 7.4Siemens Simatic Wincc Runtime Professional
APPSiemens≤ 13
Related vulnerabilities
Siemens SIMATIC — RCE przez wbudowane funkcje systemu zarządzania bazą danych
Path Traversal w SIMATIC PCS 7 i WinCC — nieautoryzowany dostęp do plików
RCE bez uwierzytelnienia w Siemens SIMATIC PCS 7 i WinCC
A vulnerability has been identified in OpenPCS 7 V9.1 (All versions < V9.1 SP2 UC05), SIMATIC BATCH V9.1 (All ...
A vulnerability has been identified in OpenPCS 7 V9.1 (All versions < V9.1 SP2 UC05), SIMATIC BATCH V9.1 (All ...