CVE-2014-2247

EUVD-2014-2286
The integrated web server on Siemens SIMATIC S7-1500 CPU PLC devices with firmware before 1.5.0 allows remote attackers to inject headers via unspecified vectors.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 71%
Affected Products (NVD)
VendorProductVersion
siemenssimatic_s7-1500_cpu_firmware
𝑥
≤ 1.1.2
siemenssimatic_s7-1500_cpu_firmware
1.0.1
siemenssimatic_s7-1500_cpu_firmware
1.1.0
siemenssimatic_s7-1500_cpu_firmware
1.1.1
𝑥
= Vulnerable software versions