4
CVE-2013-0676
- EPSS 0.21%
- Veröffentlicht 21.03.2013 15:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
- Quelle ics-cert@hq.dhs.gov
- CVE-Watchlists
- Unerledigt
Siemens WinCC before 7.2, as used in SIMATIC PCS7 before 8.0 SP1 and other products, does not properly assign privileges for the database containing WebNavigator credentials, which allows remote authenticated users to obtain sensitive information via a SQL query.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Siemens ≫ Simatic Pcs7 Version <= 8.0
Siemens ≫ Simatic Pcs7 Version7.1 Updatesp3
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.21% | 0.439 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4 | 8 | 2.9 |
AV:N/AC:L/Au:S/C:P/I:N/A:N
|