Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f7g5-6g5q-8c2q

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.9

Описание

A vulnerability was discovered in Siemens SIMATIC WinCC (V7.3 before Upd 11 and V7.4 before SP1), SIMATIC WinCC Runtime Professional (V13 before SP2 and V14 before SP1), SIMATIC WinCC (TIA Portal) Professional (V13 before SP2 and V14 before SP1) that could allow an authenticated, remote attacker who is member of the "administrators" group to crash services by sending specially crafted messages to the DCOM interface.

A vulnerability was discovered in Siemens SIMATIC WinCC (V7.3 before Upd 11 and V7.4 before SP1), SIMATIC WinCC Runtime Professional (V13 before SP2 and V14 before SP1), SIMATIC WinCC (TIA Portal) Professional (V13 before SP2 and V14 before SP1) that could allow an authenticated, remote attacker who is member of the "administrators" group to crash services by sending specially crafted messages to the DCOM interface.

EPSS

Процентиль: 69%
0.00613
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-20
CWE-787

Связанные уязвимости

CVSS3: 4.9
nvd
больше 8 лет назад

A vulnerability was discovered in Siemens SIMATIC WinCC (V7.3 before Upd 11 and V7.4 before SP1), SIMATIC WinCC Runtime Professional (V13 before SP2 and V14 before SP1), SIMATIC WinCC (TIA Portal) Professional (V13 before SP2 and V14 before SP1) that could allow an authenticated, remote attacker who is member of the "administrators" group to crash services by sending specially crafted messages to the DCOM interface.

EPSS

Процентиль: 69%
0.00613
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-20
CWE-787