Directory traversal vulnerability in Siemens SIMATIC WinCC OA before 3.12 P002 January allows remote attackers to read arbitrary files via crafted packets to TCP port 4999.
References
Configurations
History
21 Nov 2024, 02:04
Type | Values Removed | Values Added |
---|---|---|
References | () http://ics-cert.us-cert.gov/advisories/ICSA-14-035-01 - US Government Resource | |
References | () http://osvdb.org/102811 - | |
References | () http://secunia.com/advisories/56651 - | |
References | () http://www.securityfocus.com/bid/65349 - | |
References | () http://www.siemens.com/innovation/pool/de/forschungsfelder/siemens_security_advisory_ssa-342587.pdf - Vendor Advisory | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/90935 - |
Information
Published : 2014-02-07 04:52
Updated : 2024-11-21 02:04
NVD link : CVE-2014-1698
Mitre link : CVE-2014-1698
CVE.ORG link : CVE-2014-1698
JSON object : View
Products Affected
siemens
- simatic_wincc_open_architecture
CWE
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')