VDB

SSA-883918

SSA-883918 PUBLISHED CVSS 5.900000095367432 MEDIUM

The affected products do not properly handle certain requests to their web application, which may lead to the leak of privileged information. This could allow an unauthenticated remote attacker to retrieve information such as users and passwords.

Risk Scores

CVSS v3.1
5.900000095367432
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N

Affected Products

VendorProductVersions
SiemensSIMATIC PCS 7 V9.1
SiemensSIMATIC WinCC Runtime Professional V19
SiemensSIMATIC WinCC V7.5
SiemensSIMATIC WinCC V7.4
SiemensSIMATIC WinCC V8.0
SiemensSIMATIC WinCC Runtime Professional V18

Timeline

  • Jul 9, 2024 CVE Published
  • Nov 12, 2024 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›