CVE-2022-24287
published 2022-05-20CVE-2022-24287: A vulnerability has been identified in SIMATIC PCS 7 V8.2 (All versions), SIMATIC PCS 7 V9.0 (All versions < V9.0 SP3 UC06), SIMATIC PCS 7 V9.1 (All versions <…
PriorityP339high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.23%
13.6th percentile
A vulnerability has been identified in SIMATIC PCS 7 V8.2 (All versions), SIMATIC PCS 7 V9.0 (All versions < V9.0 SP3 UC06), SIMATIC PCS 7 V9.1 (All versions < V9.1 SP1 UC01), SIMATIC WinCC Runtime Professional V16 and earlier (All versions), SIMATIC WinCC Runtime Professional V17 (All versions < V17 Upd4), SIMATIC WinCC V7.3 (All versions), SIMATIC WinCC V7.4 (All versions < V7.4 SP1 Update 21), SIMATIC WinCC V7.5 (All versions < V7.5 SP2 Update 8). A missing printer configuration on the host could allow an authenticated attacker to escape the WinCC Kiosk Mode.
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| siemens | simatic_pcs_7 | <= 9.0 | — |
| siemens | simatic_pcs_7 | — | — |
| siemens | simatic_pcs_7_v8.2 | — | — |
| siemens | simatic_pcs_7_v9.0 | — | — |
| siemens | simatic_pcs_7_v9.1 | — | — |
| siemens | simatic_wincc | <= 7.4 | — |
| siemens | simatic_wincc | — | — |
| siemens | simatic_wincc_runtime_professional | <= 16 | — |
| siemens | simatic_wincc_runtime_professional | — | — |
| siemens | simatic_wincc_runtime_professional_v16_and_earlier | — | — |
| siemens | simatic_wincc_runtime_professional_v17 | — | — |
| siemens | simatic_wincc_v7.3 | — | — |
| siemens | simatic_wincc_v7.4 | — | — |
| siemens | simatic_wincc_v7.5 | — | — |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
CISA ICS
Siemens SIMATIC WinCC (Update A)
cisa_ics·2022-05-12·CVSS 7.8
[HIGH] Siemens SIMATIC WinCC (Update A)
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Siemens SIMATIC WinCC (Update A)
Last RevisedJune 16, 2022
Alert CodeICSA-22-132-06
## As of January 10, 2023, CISA will no longer be updating ICS security advisories for Siemens product vulnerabilities beyond the initial advisory. For the most up-to-date information on vulnerabilities in this advisory, please see Siemens' ProductCERT Security Advisories (CERT Services | Services | Siemens Global).
## 1. EXECUTIVE SUMMARY
- CVSS v3 7.8
- ATTENTION: Low attack complexity
- Vendor: Siemens
- Equipment: SIMATIC PCS, WinCC
- Vulnerability: Insecure Default Initialization of R
GHSA
GHSA-8h6x-wrc8-g9xc: A vulnerability has been identified in SIMATIC PCS 7 V9
ghsa_unreviewed·2022-05-21
CVE-2022-24287 [HIGH] CWE-1188 GHSA-8h6x-wrc8-g9xc: A vulnerability has been identified in SIMATIC PCS 7 V9
A vulnerability has been identified in SIMATIC PCS 7 V9.0 and earlier (All versions), SIMATIC PCS 7 V9.1 (All versions), SIMATIC WinCC Runtime Professional V16 and earlier (All versions), SIMATIC WinCC Runtime Professional V17 (All versions), SIMATIC WinCC V7.4 and earlier (All versions), SIMATIC WinCC V7.5 (All versions < V7.5 SP2 Update 8). An authenticated attacker could escape the WinCC Kiosk Mode by opening the printer dialog in the affected application in case no printer is installed.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-05-20
Published