Siemens

Logo! Soft Comfort

6 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.08%
  • Veröffentlicht 11.08.2026 12:20:22
  • Zuletzt bearbeitet 28.08.2026 19:03:37

A vulnerability has been identified in LOGO! Soft Comfort (All versions < V9). The project password feature in the affected products stores the password as an unsalted SHA-256 hash. This could allow an attacker who has obtained the project file to pe...

  • EPSS 0.11%
  • Veröffentlicht 11.08.2026 12:20:21
  • Zuletzt bearbeitet 28.08.2026 19:03:37

A vulnerability has been identified in LOGO! Soft Comfort (All versions < V9). Affected products use a static, hardcoded AES master key to encrypt project files. This could allow a local attacker to extract the master key from the application files o...

  • EPSS 0.31%
  • Veröffentlicht 22.04.2021 21:15:09
  • Zuletzt bearbeitet 21.11.2024 05:17:44

A vulnerability has been identified in LOGO! Soft Comfort (All versions < V8.4). A zip slip vulnerability could be triggered while importing a compromised project file to the affected software. Chained with other vulnerabilities this vulnerability co...

  • EPSS 0.25%
  • Veröffentlicht 22.04.2021 21:15:09
  • Zuletzt bearbeitet 21.11.2024 05:17:45

A vulnerability has been identified in LOGO! Soft Comfort (All versions < V8.4). The software insecurely loads libraries which makes it vulnerable to DLL hijacking. Successful exploitation by a local attacker could lead to a takeover of the system wh...

  • EPSS 0.17%
  • Veröffentlicht 14.12.2020 21:15:19
  • Zuletzt bearbeitet 21.11.2024 05:17:42

A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3), LOGO! Soft Comfort (All versions < V8.3). The encryption of program data for the affected devices uses a static key. An attacker could use this key to ex...

  • EPSS 1.27%
  • Veröffentlicht 14.05.2019 20:29:02
  • Zuletzt bearbeitet 21.11.2024 04:20:09

A vulnerability has been identified in LOGO! Soft Comfort (All versions < V8.3). The vulnerability could allow an attacker to execute arbitrary code if the attacker tricks a legitimate user to open a manipulated project. In order to exploit the vulne...