Show filters
112 Total Results
Displaying 71-80 of 112
Sort by:
Attacker Value
Unknown

CVE-2014-5231

Disclosure Date: January 14, 2015 (last updated October 05, 2023)
The Siemens SIMATIC WinCC Sm@rtClient app before 1.0.2 for iOS allows physically proximate attackers to extract the password from storage via unspecified vectors.
0
Attacker Value
Unknown

CVE-2014-5233

Disclosure Date: January 14, 2015 (last updated October 05, 2023)
The Siemens SIMATIC WinCC Sm@rtClient app before 1.0.2 for iOS allows physically proximate attackers to discover Sm@rtServer credentials by leveraging an error in the credential-processing mechanism.
0
Attacker Value
Unknown

CVE-2014-5232

Disclosure Date: January 14, 2015 (last updated October 05, 2023)
The Siemens SIMATIC WinCC Sm@rtClient app before 1.0.2 for iOS allows local users to bypass an intended application-password requirement by leveraging the running of the app in the background state.
0
Attacker Value
Unknown

CVE-2014-8551

Disclosure Date: November 26, 2014 (last updated October 05, 2023)
The WinCC server in Siemens SIMATIC WinCC 7.0 through SP3, 7.2 before Update 9, and 7.3 before Update 2; SIMATIC PCS 7 7.1 through SP4, 8.0 through SP2, and 8.1; and TIA Portal 13 before Update 6 allows remote attackers to execute arbitrary code via crafted packets.
0
Attacker Value
Unknown

CVE-2014-8552

Disclosure Date: November 26, 2014 (last updated October 05, 2023)
The WinCC server in Siemens SIMATIC WinCC 7.0 through SP3, 7.2 before Update 9, and 7.3 before Update 2; SIMATIC PCS 7 7.1 through SP4, 8.0 through SP2, and 8.1; and TIA Portal 13 before Update 6 allows remote attackers to read arbitrary files via crafted packets.
0
Attacker Value
Unknown

CVE-2014-4684

Disclosure Date: July 24, 2014 (last updated October 05, 2023)
The database server in Siemens SIMATIC WinCC before 7.3, as used in PCS7 and other products, allows remote authenticated users to gain privileges via a request to TCP port 1433.
0
Attacker Value
Unknown

CVE-2014-4685

Disclosure Date: July 24, 2014 (last updated October 05, 2023)
Siemens SIMATIC WinCC before 7.3, as used in PCS7 and other products, allows local users to gain privileges by leveraging weak system-object access control.
0
Attacker Value
Unknown

CVE-2014-4683

Disclosure Date: July 24, 2014 (last updated October 05, 2023)
The WebNavigator server in Siemens SIMATIC WinCC before 7.3, as used in PCS7 and other products, allows remote authenticated users to gain privileges via a (1) HTTP or (2) HTTPS request.
0
Attacker Value
Unknown

CVE-2014-4682

Disclosure Date: July 24, 2014 (last updated October 05, 2023)
The WebNavigator server in Siemens SIMATIC WinCC before 7.3, as used in PCS7 and other products, allows remote attackers to obtain sensitive information via an HTTP request.
0
Attacker Value
Unknown

CVE-2014-4686

Disclosure Date: July 24, 2014 (last updated October 05, 2023)
The Project administration application in Siemens SIMATIC WinCC before 7.3, as used in PCS7 and other products, has a hardcoded encryption key, which allows remote attackers to obtain sensitive information by extracting this key from another product installation and then employing this key during the sniffing of network traffic on TCP port 1030.
0