CVE-2014-4684
24.07.2014, 14:55
The database server in Siemens SIMATIC WinCC before 7.3, as used in PCS7 and other products, allows remote authenticated users to gain privileges via a request to TCP port 1433.Enginsight
| Vendor | Product | Version |
|---|---|---|
| siemens | simatic_pcs7 | 𝑥 ≤ 8.0 |
| siemens | simatic_pcs7 | 7.1:sp3 |
| siemens | simatic_pcs7 | 8.0 |
| siemens | wincc | 𝑥 ≤ 7.2 |
| siemens | wincc | 5.0 |
| siemens | wincc | 5.0:sp1 |
| siemens | wincc | 6.0 |
| siemens | wincc | 6.0:sp2 |
| siemens | wincc | 6.0:sp3 |
| siemens | wincc | 6.0:sp4 |
| siemens | wincc | 7.0 |
| siemens | wincc | 7.0:sp1 |
| siemens | wincc | 7.0:sp2 |
| siemens | wincc | 7.0:sp3 |
| siemens | wincc | 7.1 |
| siemens | wincc | 7.1:sp1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration