7.4
CVSSv3

CVE-2017-2685

Published: 01/03/2017 Updated: 09/10/2019
CVSS v2 Base Score: 5.8 | Impact Score: 4.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.4 | Impact Score: 5.2 | Exploitability Score: 2.2
VMScore: 516
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:N

Vulnerability Summary

Siemens SINUMERIK Integrate Operate Clients between 2.0.3.00.016 (including) and 2.0.6 (excluding) and between 3.0.4.00.032 (including) and 3.0.6 (excluding) contain a vulnerability that could allow an malicious user to read and manipulate data in TLS sessions while performing a man-in-the-middle (MITM) attack.

Vulnerable Product Search on Vulmon Subscribe to Product

siemens sinumerik operate 4.7

siemens sinumerik operate 4.5

siemens sinumerik integrate access mymachine/ethernet -

siemens sinumerik integrate operate client 2.0.3.00.016

siemens sinumerik integrate operate client 3.0.4.00.032