The Siemens SIMATIC S7-1200 2.x PLC does not properly protect the private key of the SIMATIC CONTROLLER Certification Authority certificate, which allows remote attackers to spoof the S7-1200 web server by using this key to create a forged certificate.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: icscert

Published: 2012-09-25T10:00:00Z

Updated: 2024-09-17T01:26:53.895Z

Reserved: 2012-05-30T00:00:00Z

Link: CVE-2012-3037

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2012-09-25T11:07:46.470

Modified: 2022-02-01T14:58:58.317

Link: CVE-2012-3037

cve-icon Redhat

No data.