4
CVE-2013-0676
- EPSS 0.21%
- Published 21.03.2013 15:55:01
- Last modified 11.04.2025 00:51:21
- Source ics-cert@hq.dhs.gov
- Teams watchlist Login
- Open Login
Siemens WinCC before 7.2, as used in SIMATIC PCS7 before 8.0 SP1 and other products, does not properly assign privileges for the database containing WebNavigator credentials, which allows remote authenticated users to obtain sensitive information via a SQL query.
Data is provided by the National Vulnerability Database (NVD)
Siemens ≫ Simatic Pcs7 Version <= 8.0
Siemens ≫ Simatic Pcs7 Version7.1 Updatesp3
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.21% | 0.439 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 4 | 8 | 2.9 |
AV:N/AC:L/Au:S/C:P/I:N/A:N
|