CVE Vulnerabilities

CVE-2014-4684

Published: Jul 24, 2014 | Modified: Jul 25, 2014
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6 MEDIUM
AV:N/AC:M/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

The database server in Siemens SIMATIC WinCC before 7.3, as used in PCS7 and other products, allows remote authenticated users to gain privileges via a request to TCP port 1433.

Affected Software

Name Vendor Start Version End Version
Wincc Siemens 7.1 7.1
Simatic_pcs7 Siemens 8.0 8.0
Wincc Siemens 6.0 6.0
Wincc Siemens 6.0 6.0
Simatic_pcs7 Siemens 7.1 7.1
Wincc Siemens 7.1 7.1
Wincc Siemens 7.0 7.0
Simatic_pcs7 Siemens * 8.0
Wincc Siemens 5.0 5.0
Wincc Siemens 7.0 7.0
Wincc Siemens 6.0 6.0
Wincc Siemens 6.0 6.0
Wincc Siemens * 7.2
Wincc Siemens 7.0 7.0
Wincc Siemens 5.0 5.0
Wincc Siemens 7.0 7.0

References