Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-25234

Опубликовано: 14 дек. 2020
Источник: nvd
CVSS3: 7.7
CVSS2: 3.6
EPSS Низкий

Описание

A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3), LOGO! Soft Comfort (All versions < V8.3). The LOGO! program files generated and used by the affected components offer the possibility to save user-defined functions (UDF) in a password protected way. This protection is implemented in the software that displays the information. An attacker could reverse engineer the UDFs directly from stored program files.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:siemens:logo\!_8_bm_firmware:*:*:*:*:*:*:*:*
Версия до 8.3 (исключая)
cpe:2.3:h:siemens:logo\!_8_bm:-:*:*:*:*:*:*:*

EPSS

Процентиль: 32%
0.00121
Низкий

7.7 High

CVSS3

3.6 Low

CVSS2

Дефекты

CWE-321

Связанные уязвимости

github
больше 3 лет назад

A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3), LOGO! Soft Comfort (All versions < V8.3). The LOGO! program files generated and used by the affected components offer the possibility to save user-defined functions (UDF) in a password protected way. This protection is implemented in the software that displays the information. An attacker could reverse engineer the UDFs directly from stored program files.

EPSS

Процентиль: 32%
0.00121
Низкий

7.7 High

CVSS3

3.6 Low

CVSS2

Дефекты

CWE-321