CVE-2012-3032
18.09.2012, 14:55
SQL injection vulnerability in WebNavigator in Siemens WinCC 7.0 SP3 and earlier, as used in SIMATIC PCS7 and other products, allows remote attackers to execute arbitrary SQL commands via a crafted SOAP message.
Vendor | Product | Version |
---|---|---|
siemens | simatic_pcs7 | 8.0 |
siemens | wincc | 𝑥 ≤ 7.0 |
siemens | wincc | 5.0 |
siemens | wincc | 5.0:sp1 |
siemens | wincc | 6.0 |
siemens | wincc | 6.0:sp2 |
siemens | wincc | 6.0:sp3 |
siemens | wincc | 6.0:sp4 |
siemens | wincc | 7.0 |
siemens | wincc | 7.0:sp1 |
siemens | wincc | 7.0:sp2 |
𝑥
= Vulnerable software versions
References