Known Vulnerabilities for Wincc by Siemens
Listed below are 10 of the newest known vulnerabilities associated with "Wincc" by "Siemens".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2017-12069 | An XXE vulnerability has been identified in OPC Foundation UA .NET Sample Code before 2017-03-21 and Local Discovery Server (... | 8.2 - HIGH | 2017-08-30 | 2017-10-06 |
| CVE-2015-2823 | Siemens SIMATIC HMI Basic Panels 2nd Generation before WinCC (TIA Portal) 13 SP1 Upd2, SIMATIC HMI Comfort Panels before WinC... | 6.8 - MEDIUM | 2015-04-08 | 2016-11-28 |
| CVE-2015-2822 | Siemens SIMATIC HMI Comfort Panels before WinCC (TIA Portal) 13 SP1 Upd2 and SIMATIC WinCC Runtime Advanced before WinCC (TIA... | 4.3 - MEDIUM | 2015-04-08 | 2016-11-28 |
| CVE-2015-1358 | The remote-management module in the (1) Multi Panels, (2) Comfort Panels, and (3) RT Advanced functionality in Siemens SIMATI... | 5 - MEDIUM | 2015-02-18 | 2016-11-30 |
| CVE-2014-4686 | The Project administration application in Siemens SIMATIC WinCC before 7.3, as used in PCS7 and other products, has a hardcod... | 6.8 - MEDIUM | 2014-07-24 | 2014-07-25 |
| CVE-2014-4685 | Siemens SIMATIC WinCC before 7.3, as used in PCS7 and other products, allows local users to gain privileges by leveraging wea... | 4.6 - MEDIUM | 2014-07-24 | 2014-07-25 |
| CVE-2014-4684 | The database server in Siemens SIMATIC WinCC before 7.3, as used in PCS7 and other products, allows remote authenticated user... | 6 - MEDIUM | 2014-07-24 | 2014-07-25 |
| CVE-2014-4683 | The WebNavigator server in Siemens SIMATIC WinCC before 7.3, as used in PCS7 and other products, allows remote authenticated ... | 4.9 - MEDIUM | 2014-07-24 | 2014-07-25 |
| CVE-2014-4682 | The WebNavigator server in Siemens SIMATIC WinCC before 7.3, as used in PCS7 and other products, allows remote attackers to o... | 5 - MEDIUM | 2014-07-24 | 2014-07-25 |
| CVE-2013-0674 | Buffer overflow in the RegReader ActiveX control in Siemens WinCC before 7.2, as used in SIMATIC PCS7 before 8.0 SP1 and othe... | 6.8 - MEDIUM | 2013-03-21 | 2013-03-22 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Siemens | Wincc | 7.3 | All | All | All |
| Application | Siemens | Wincc | 7.2 | All | All | All |
| Application | Siemens | Wincc | 7.1 | All | All | All |
| Application | Siemens | Wincc | 7.1 | sp1 | All | All |
| Application | Siemens | Wincc | 7.0 | All | All | All |
| Application | Siemens | Wincc | 7.0 | sp1 | All | All |
| Application | Siemens | Wincc | 7.0 | sp2 | All | All |
| Application | Siemens | Wincc | 7.0 | sp3 | All | All |
| Application | Siemens | Wincc | 6.0 | All | All | All |
| Application | Siemens | Wincc | 6.0 | sp2 | All | All |
| Application | Siemens | Wincc | 6.0 | sp3 | All | All |
| Application | Siemens | Wincc | 6.0 | sp4 | All | All |
| Application | Siemens | Wincc | 5.0 | All | All | All |
| Application | Siemens | Wincc | 5.0 | sp1 | All | All |
| Application | Siemens | Wincc | 13.0 | All | All | All |