cbcvebase.
CVE-2013-4911
published 2013-08-01

CVE-2013-4911: Cross-site request forgery (CSRF) vulnerability in Siemens WinCC (TIA Portal) 11 and 12 before 12 SP1 allows remote attackers to hijack the authentication of…

PriorityP427medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EPSS
1.08%
61.2th percentile
Cross-site request forgery (CSRF) vulnerability in Siemens WinCC (TIA Portal) 11 and 12 before 12 SP1 allows remote attackers to hijack the authentication of unspecified victims by leveraging improper configuration of SIMATIC HMI panels by the WinCC product.

Affected

2 ranges
VendorProductVersion rangeFixed in
siemenswincc
siemenswincc
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.