Vulnerabilities (CVE)

Filtered by vendor Siemens Subscribe
Filtered by product Simatic Wincc Open Architecture
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-1696 1 Siemens 1 Simatic Wincc Open Architecture 2017-08-29 5.0 MEDIUM N/A
Siemens SIMATIC WinCC OA before 3.12 P002 January uses a weak hash algorithm for passwords, which makes it easier for remote attackers to obtain access via a brute-force attack.
CVE-2014-1697 1 Siemens 1 Simatic Wincc Open Architecture 2017-08-29 7.5 HIGH N/A
The integrated web server in Siemens SIMATIC WinCC OA before 3.12 P002 January allows remote attackers to execute arbitrary code via crafted packets to TCP port 4999.
CVE-2014-1698 1 Siemens 1 Simatic Wincc Open Architecture 2017-08-29 5.0 MEDIUM N/A
Directory traversal vulnerability in Siemens SIMATIC WinCC OA before 3.12 P002 January allows remote attackers to read arbitrary files via crafted packets to TCP port 4999.
CVE-2014-1699 1 Siemens 1 Simatic Wincc Open Architecture 2017-08-29 5.0 MEDIUM N/A
Siemens SIMATIC WinCC OA before 3.12 P002 January allows remote attackers to cause a denial of service (monitoring-service outage) via malformed HTTP requests to port 4999.