CVE-2023-46096
EUVD-2023-5035714.11.2023, 11:15
A vulnerability has been identified in SIMATIC PCS neo (All versions < V4.1). The PUD Manager of affected products does not properly authenticate users in the PUD Manager web service. This could allow an unauthenticated adjacent attacker to generate a privileged token and upload additional documents.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| siemens | simatic_pcs_neo | 𝑥 < 4.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration