Filtered by vendor Siemens
Subscriptions
Filtered by product Simatic Step 7
Subscriptions
Total
23 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2015-1356 | 1 Siemens | 1 Simatic Step 7 | 2024-11-21 | N/A |
Siemens SIMATIC STEP 7 (TIA Portal) before 13 SP1 determines a user's privileges on the basis of project-file fields that lack integrity protection, which allows remote attackers to establish arbitrary authorization data via a modified file. | ||||
CVE-2015-1355 | 1 Siemens | 1 Simatic Step 7 | 2024-11-21 | N/A |
Siemens SIMATIC STEP 7 (TIA Portal) before 13 SP1 uses a weak password-hash algorithm, which makes it easier for local users to determine cleartext passwords by reading a project file and conducting a brute-force attack. | ||||
CVE-2012-3015 | 1 Siemens | 2 Simatic Pcs7, Simatic Step 7 | 2024-11-21 | N/A |
Untrusted search path vulnerability in Siemens SIMATIC STEP7 before 5.5 SP1, as used in SIMATIC PCS7 7.1 SP3 and earlier and other products, allows local users to gain privileges via a Trojan horse DLL in a STEP7 project folder. |