CVE-2017-9946
23.10.2017, 08:29
A vulnerability has been identified in Siemens APOGEE PXC and TALON TC BACnet Automation Controllers in all versions <V3.5. An attacker with network access to the integrated web server (80/tcp and 443/tcp) could bypass the authentication and download sensitive information from the device.Enginsight
| Vendor | Product | Version |
|---|---|---|
| siemens | apogee_pxc_firmware | 𝑥 < 3.5 |
| siemens | apogee_pxc_modular_firmware | 𝑥 < 3.5 |
| siemens | talon_tc_compact_firmware | 𝑥 < 3.5 |
| siemens | talon_tc_modular_firmware | 𝑥 < 3.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References