Siemens SIMATIC STEP 7 CVE-2015-1356 Security Bypass Vulnerability
BID:72627
Info
Siemens SIMATIC STEP 7 CVE-2015-1356 Security Bypass Vulnerability
| Bugtraq ID: | 72627 |
| Class: | Design Error |
| CVE: |
CVE-2015-1356 |
| Remote: | No |
| Local: | Yes |
| Published: | Feb 13 2015 12:00AM |
| Updated: | Mar 19 2015 07:29AM |
| Credit: | Aleksandr Timorin from Positive Technologies |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
Siemens SIMATIC STEP 7 CVE-2015-1356 Security Bypass Vulnerability
Siemens SIMATIC STEP 7 is prone to a a security-bypass vulnerability.
Attackers can exploit this issue to perform unauthorized actions with elevated privileges.
Versions prior to SIMATIC STEP 7 V13 SP1 are vulnerable.
Siemens SIMATIC STEP 7 is prone to a a security-bypass vulnerability.
Attackers can exploit this issue to perform unauthorized actions with elevated privileges.
Versions prior to SIMATIC STEP 7 V13 SP1 are vulnerable.
Exploit / POC
Siemens SIMATIC STEP 7 CVE-2015-1356 Security Bypass Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Siemens SIMATIC STEP 7 CVE-2015-1356 Security Bypass Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Siemens SIMATIC STEP 7 CVE-2015-1356 Security Bypass Vulnerability
References:
References:
- Siemens Homepage (Siemens)