NA

CVE-2023-46096

Published: 14/11/2023 Updated: 20/11/2023
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

A vulnerability has been identified in SIMATIC PCS neo (All versions < V4.1). The PUD Manager of affected products does not properly authenticate users in the PUD Manager web service. This could allow an unauthenticated adjacent malicious user to generate a privileged token and upload additional documents.

Vulnerable Product Search on Vulmon Subscribe to Product

siemens simatic pcs neo