A vulnerability has been identified in Totally Integrated Automation Portal (TIA Portal) V14 (All versions), Totally Integrated Automation Portal (TIA Portal) V15 (All versions), Totally Integrated Automation Portal (TIA Portal) V15.1 (All versions), Totally Integrated Automation Portal (TIA Portal) V16 (All versions), Totally Integrated Automation Portal (TIA Portal) V17 (All versions), Totally Integrated Automation Portal (TIA Portal) V18 (All versions), Totally Integrated Automation Portal (TIA Portal) V19 (All versions). The know-how protection feature in affected products does not properly update the encryption of existing program blocks when a project file is updated.
This could allow attackers with access to the project file to recover previous - yet unprotected - versions of the project without the knowledge of the know-how protection password.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: siemens
Published: 2023-06-13T08:17:10.136Z
Updated: 2024-08-02T14:37:15.422Z
Reserved: 2023-04-14T11:16:56.497Z
Link: CVE-2023-30757
Vulnrichment
No data.
NVD
Status : Modified
Published: 2023-06-13T09:15:17.323
Modified: 2024-11-21T08:00:50.620
Link: CVE-2023-30757
Redhat
No data.