4.4
CVSSv2

CVE-2015-1356

Published: 18/02/2015 Updated: 18/02/2015
CVSS v2 Base Score: 4.4 | Impact Score: 6.4 | Exploitability Score: 3.4
VMScore: 392
Vector: AV:L/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Siemens SIMATIC STEP 7 (TIA Portal) prior to 13 SP1 determines a user's privileges on the basis of project-file fields that lack integrity protection, which allows remote malicious users to establish arbitrary authorization data via a modified file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

siemens simatic step 7