Cross-site request forgery (CSRF) vulnerability in Siemens WinCC (TIA Portal) 11 and 12 prior to 12 SP1 allows remote malicious users to hijack the authentication of unspecified victims by leveraging improper configuration of SIMATIC HMI panels by the WinCC product.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
siemens wincc 12.0 |
||
siemens wincc 11.0 |