cbcvebase.
CVE-2015-1602
published 2015-04-06

CVE-2015-1602: Siemens SIMATIC STEP 7 (TIA Portal) 12 and 13 before 13 SP1 Upd1 improperly stores password data within project files, which makes it easier for local users to…

PriorityP48low2.1CVSS 2.0
AVLACLAuNCPINAN
EPSS
0.37%
28.8th percentile
Siemens SIMATIC STEP 7 (TIA Portal) 12 and 13 before 13 SP1 Upd1 improperly stores password data within project files, which makes it easier for local users to determine cleartext (1) protection-level passwords or (2) web-server passwords by leveraging the ability to read these files.

Affected

3 ranges
VendorProductVersion rangeFixed in
siemenssimatic_step_7<= 13.0
siemenssimatic_step_7
siemenssimatic_step_7
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.