QID 591252
QID 591252: Siemens SIMATIC NET PC Software Message Integrity Protection Bypass Vulnerability (SSA-273799)
SIMATIC NET PC software is a software product that is sold separately and implements the communications product from SIMATIC NET.
SIMATIC WinCC Runtime Advanced is a visualization runtime platform used for operator control and monitoring of machines and plants.
SIMATIC WinCC Runtime Professional is a visualization runtime platform used for operator control and monitoring of machines and plants.
Affected versions:
SIMATIC WinCC Runtime Advanced all versions prior to version V16
SIMATIC WinCC Runtime Professional all versions prior to version V16
SIMATIC NET PC Software V14 all versions prior to V14 SP1 Update 14
SIMATIC NET PC Software V15 all versions.
QID Detection Logic:(Authenticated)
This QID checks for the Vulnerable version of Siemens using registry "HKLM\SOFTWARE\Siemens"
Successful exploitation of these vulnerabilities could allow an attacker in a Man-in-the-Middle position to modify network traffic sent on port 102/tcp to the affected devices.
Customers are advised to refer to CERT MITIGATIONS section SSA-273799 for affected packages and patching details.
CVEs related to QID 591252
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| SSA-273799 |
|