Lucene search

K
nvd[email protected]NVD:CVE-2014-8552
HistoryNov 26, 2014 - 11:59 a.m.

CVE-2014-8552

2014-11-2611:59:01
CWE-200
web.nvd.nist.gov
6

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.5

Confidence

Low

EPSS

0.003

Percentile

70.8%

The WinCC server in Siemens SIMATIC WinCC 7.0 through SP3, 7.2 before Update 9, and 7.3 before Update 2; SIMATIC PCS 7 7.1 through SP4, 8.0 through SP2, and 8.1; and TIA Portal 13 before Update 6 allows remote attackers to read arbitrary files via crafted packets.

Affected configurations

Nvd
Node
siemenssimatic_pcs_7Match7.1sp1
OR
siemenssimatic_pcs7Match7.1sp3
OR
siemenssimatic_pcs7Match7.1sp4
OR
siemenssimatic_pcs7Match8.0sp1
OR
siemenssimatic_pcs7Match8.0sp2
OR
siemenssimatic_pcs7Match8.1
OR
siemenssimatic_tiaportalMatch13.0
OR
siemenssimatic_tiaportalMatch13.03
OR
siemenssimatic_tiaportalMatch13.05
OR
siemenssimatic_winccMatch7.0
OR
siemenssimatic_winccMatch7.0sp1
OR
siemenssimatic_winccMatch7.0sp2
OR
siemenssimatic_winccMatch7.0sp3
OR
siemenssimatic_winccMatch7.21
OR
siemenssimatic_winccMatch7.22
OR
siemenssimatic_winccMatch7.23
OR
siemenssimatic_winccMatch7.24
OR
siemenssimatic_winccMatch7.25
OR
siemenssimatic_winccMatch7.26
OR
siemenssimatic_winccMatch7.27
OR
siemenssimatic_winccMatch7.28
OR
siemenssimatic_winccMatch7.31
VendorProductVersionCPE
siemenssimatic_pcs_77.1cpe:2.3:a:siemens:simatic_pcs_7:7.1:sp1:*:*:*:*:*:*
siemenssimatic_pcs77.1cpe:2.3:a:siemens:simatic_pcs7:7.1:sp3:*:*:*:*:*:*
siemenssimatic_pcs77.1cpe:2.3:a:siemens:simatic_pcs7:7.1:sp4:*:*:*:*:*:*
siemenssimatic_pcs78.0cpe:2.3:a:siemens:simatic_pcs7:8.0:sp1:*:*:*:*:*:*
siemenssimatic_pcs78.0cpe:2.3:a:siemens:simatic_pcs7:8.0:sp2:*:*:*:*:*:*
siemenssimatic_pcs78.1cpe:2.3:a:siemens:simatic_pcs7:8.1:*:*:*:*:*:*:*
siemenssimatic_tiaportal13.0cpe:2.3:a:siemens:simatic_tiaportal:13.0:*:*:*:*:*:*:*
siemenssimatic_tiaportal13.0cpe:2.3:a:siemens:simatic_tiaportal:13.0:3:*:*:*:*:*:*
siemenssimatic_tiaportal13.0cpe:2.3:a:siemens:simatic_tiaportal:13.0:5:*:*:*:*:*:*
siemenssimatic_wincc7.0cpe:2.3:a:siemens:simatic_wincc:7.0:*:*:*:*:*:*:*
Rows per page:
1-10 of 221

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:N/A:N

AI Score

6.5

Confidence

Low

EPSS

0.003

Percentile

70.8%

Related for NVD:CVE-2014-8552