CVE-2015-1358
published 2015-02-18CVE-2015-1358: The remote-management module in the (1) Multi Panels, (2) Comfort Panels, and (3) RT Advanced functionality in Siemens SIMATIC WinCC (TIA Portal) before 13 SP1…
PriorityP428medium5CVSS 2.0
AVNACLAuNCPINAN
EPSS
2.69%
84.1th percentile
The remote-management module in the (1) Multi Panels, (2) Comfort Panels, and (3) RT Advanced functionality in Siemens SIMATIC WinCC (TIA Portal) before 13 SP1 and in the (4) panels and (5) runtime functionality in SIMATIC WinCC flexible before 2008 SP3 Up7 does not properly encrypt credentials in transit, which makes it easier for remote attackers to determine cleartext credentials by sniffing the network and conducting a decryption attack.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| siemens | wincc | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
CISA ICS
Siemens SIMATIC WinCC TIA Portal Vulnerabilities
cisa_ics·2018-08-29
Siemens SIMATIC WinCC TIA Portal Vulnerabilities
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Siemens SIMATIC WinCC TIA Portal Vulnerabilities
Last RevisedAugust 29, 2018
Alert CodeICSA-15-048-02
## OVERVIEW
Gleb Gritsai, Roman Ilin, Aleksandr Tlyapov, and Sergey Gordeychik from Positive Technologies have identified authentication vulnerabilities in the Siemens SIMATIC WinCC TIA Portal application. Siemens has produced a service pack that mitigates these vulnerabilities.
These vulnerabilities could be exploited remotely.
## AFFECTED PRODUCTS
The following Siemens products are affected:
- SIMATIC WinCC TIA Portal: All versions prior to V13 SP1
## IMPACT
An attacker
CISA ICS
Siemens SIMATIC WinCC Flexible Weakly Protected Credentials Vulnerability
cisa_ics·2018-08-23
Siemens SIMATIC WinCC Flexible Weakly Protected Credentials Vulnerability
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Siemens SIMATIC WinCC Flexible Weakly Protected Credentials Vulnerability
Last RevisedAugust 23, 2018
Alert CodeICSA-16-161-02
## OVERVIEW
Siemens has identified a weakly protected credentials vulnerability in SIMATIC WinCC flexible. Gleb Gritsai and Roman Ilin from Positive Technologies reported this issue directly to Siemens. Siemens has produced an update to mitigate this vulnerability.
This vulnerability could be exploited remotely.
## AFFECTED PRODUCTS
Siemens reports that the vulnerability affects the following product:
- SIMATIC WinCC flexible: All versions prior to S
GHSA
GHSA-fppq-ww74-9952: The remote-management module in the (1) Multi Panels, (2) Comfort Panels, and (3) RT Advanced functionality in Siemens SIMATIC WinCC (TIA Portal) befo
ghsa_unreviewed·2022-05-17
CVE-2015-1358 [MEDIUM] GHSA-fppq-ww74-9952: The remote-management module in the (1) Multi Panels, (2) Comfort Panels, and (3) RT Advanced functionality in Siemens SIMATIC WinCC (TIA Portal) befo
The remote-management module in the (1) Multi Panels, (2) Comfort Panels, and (3) RT Advanced functionality in Siemens SIMATIC WinCC (TIA Portal) before 13 SP1 and in the (4) panels and (5) runtime functionality in SIMATIC WinCC flexible before 2008 SP3 Up7 does not properly encrypt credentials in transit, which makes it easier for remote attackers to determine cleartext credentials by sniffing the network and conducting a decryption attack.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.securityfocus.com/bid/72625http://www.securitytracker.com/id/1036090http://www.siemens.com/cert/pool/cert/siemens_security_advisory_ssa-526760.pdfhttp://www.siemens.com/innovation/pool/de/forschungsfelder/siemens_security_advisory_ssa-543623.pdfhttps://ics-cert.us-cert.gov/advisories/ICSA-16-161-02http://www.securityfocus.com/bid/72625http://www.securitytracker.com/id/1036090http://www.siemens.com/cert/pool/cert/siemens_security_advisory_ssa-526760.pdfhttp://www.siemens.com/innovation/pool/de/forschungsfelder/siemens_security_advisory_ssa-543623.pdfhttps://ics-cert.us-cert.gov/advisories/ICSA-16-161-02
2015-02-18
Published