SIEMENS-SSA-944678
·
Published 2021-02-09
·
View on Siemens ProductCERT ↗
SSA-944678 V1.0: Potential Password Protection Bypass in SIMATIC WinCC
CVSS N/A
MEDIUM
Risk Summary
<p>A vulnerability in the SIMATIC WinCC Graphics Designer tool could allow an attacker that has physical access to a machine running the software to get access to the user’s private password-protected pictures.</p> <p>Siemens has released an update for SIMATIC WinCC and recommends to update to the latest version. Siemens recommends specific countermeasures for PCS 7 as the affected feature is not officially supported.</p>
Remediations
- Refer to Siemens ProductCERT advisory for patch and remediation guidance.
Affected Vendors
Siemens
Affected Products (1)
Siemens
·
SSA-944678 V1.0: Potential Password Protection Bypass in SIMATIC WinCC
See advisory
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more