Siemens WinCC before 7.2, as used in SIMATIC PCS7 before 8.0 SP1 and other products, does not properly represent WebNavigator credentials in a database, which makes it easier for remote authenticated users to obtain sensitive information via a SQL query.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: icscert
Published: 2013-03-21T15:00:00Z
Updated: 2024-09-17T00:01:41.755Z
Reserved: 2012-12-19T00:00:00Z
Link: CVE-2013-0678
Vulnrichment
No data.
NVD
Status : Modified
Published: 2013-03-21T15:55:01.600
Modified: 2024-11-21T01:47:59.673
Link: CVE-2013-0678
Redhat
No data.