2022-11-08
|
CVE-2022-30694
|
The login endpoint /FormLogin in affected web services does not apply proper origin checking.
This could allow authenticated remote attackers to track the activities of other users via a login cross-site request forgery attack.
|
6ag1151\-8ab01\-7ab0_firmware, 6ag1151\-8fb01\-2ab0_firmware, 6ag1314\-6eh04\-7ab0_firmware, 6ag1315\-2eh14\-7ab0_firmware, 6ag1315\-2fj14\-2ab0_firmware, 6ag1317\-2ek14\-7ab0_firmware, 6ag1317\-2fk14\-2ab0_firmware, 6es7151\-8ab01\-0ab0_firmware, 6es7151\-8fb01\-0ab0_firmware, 6es7154\-8ab01\-0ab0_firmware, 6es7154\-8fb01\-0ab0_firmware, 6es7154\-8fx00\-0ab0_firmware, 6es7314\-6eh04\-0ab0_firmware, 6es7315\-2eh14\-0ab0_firmware, 6es7315\-2fj14\-0ab0_firmware, 6es7315\-7tj10\-0ab0_firmware, 6es7317\-2ek14\-0ab0_firmware, 6es7317\-2fk14\-0ab0_firmware, 6es7317\-7tk10\-0ab0_firmware, 6es7317\-7ul10\-0ab0_firmware, 6es7318\-3el01\-0ab0_firmware, 6es7318\-3fl01\-0ab0_firmware, Simatic_drive_controller_cpu_1504d_tf_firmware, Simatic_drive_controller_cpu_1507d_tf_firmware, Simatic_pcs_firmware, Simatic_s7\-1200_cpu_1211c_firmware, Simatic_s7\-1200_cpu_1212c_firmware, Simatic_s7\-1200_cpu_1212fc_firmware, Simatic_s7\-1200_cpu_1214_fc_firmware, Simatic_s7\-1200_cpu_1214c_firmware, Simatic_s7\-1200_cpu_1214fc_firmware, Simatic_s7\-1200_cpu_1215_fc_firmware, Simatic_s7\-1200_cpu_1215c_firmware, Simatic_s7\-1200_cpu_1215fc_firmware, Simatic_s7\-1200_cpu_1217c_firmware, Simatic_s7\-1200_cpu_12_1211c_firmware, Simatic_s7\-1200_cpu_12_1212c_firmware, Simatic_s7\-1200_cpu_12_1212fc_firmware, Simatic_s7\-1200_cpu_12_1214c_firmware, Simatic_s7\-1200_cpu_12_1214fc_firmware, Simatic_s7\-1200_cpu_12_1215c_firmware, Simatic_s7\-1200_cpu_12_1215fc_firmware, Simatic_s7\-1200_cpu_12_1217c_firmware, Simatic_s7\-1500_cpu_1507s_f_firmware, Simatic_s7\-1500_cpu_1507s_firmware, Simatic_s7\-1500_cpu_1508s_f_firmware, Simatic_s7\-1500_cpu_1508s_firmware, Simatic_s7\-1500_cpu_1510sp\-1_firmware, Simatic_s7\-1500_cpu_1510sp_firmware, Simatic_s7\-1500_cpu_1511\-1_firmware, Simatic_s7\-1500_cpu_1511\-1_pn_firmware, Simatic_s7\-1500_cpu_1511c\-1_firmware, Simatic_s7\-1500_cpu_1511c_firmware, Simatic_s7\-1500_cpu_1511f\-1_firmware, Simatic_s7\-1500_cpu_1511f\-1_pn_firmware, Simatic_s7\-1500_cpu_1511t\-1_firmware, Simatic_s7\-1500_cpu_1511tf\-1_firmware, Simatic_s7\-1500_cpu_1512c\-1_firmware, Simatic_s7\-1500_cpu_1512c_firmware, Simatic_s7\-1500_cpu_1512sp\-1_firmware, Simatic_s7\-1500_cpu_1512spf\-1_firmware, Simatic_s7\-1500_cpu_1513\-1_firmware, Simatic_s7\-1500_cpu_1513\-1_pn_firmware, Simatic_s7\-1500_cpu_1513f\-1_firmware, Simatic_s7\-1500_cpu_1513f\-1_pn_firmware, Simatic_s7\-1500_cpu_1513r\-1_firmware, Simatic_s7\-1500_cpu_151511c\-1_firmware, Simatic_s7\-1500_cpu_151511f\-1_firmware, Simatic_s7\-1500_cpu_1515\-2_firmware, Simatic_s7\-1500_cpu_1515\-2_pn_firmware, Simatic_s7\-1500_cpu_1515f\-2_firmware, Simatic_s7\-1500_cpu_1515f\-2_pn_firmware, Simatic_s7\-1500_cpu_1515r\-2_firmware, Simatic_s7\-1500_cpu_1515t\-2_firmware, Simatic_s7\-1500_cpu_1515tf\-2_firmware, Simatic_s7\-1500_cpu_1516\-3_dp_firmware, Simatic_s7\-1500_cpu_1516\-3_firmware, Simatic_s7\-1500_cpu_1516\-3_pn\/dp_firmware, Simatic_s7\-1500_cpu_1516\-3_pn_firmware, Simatic_s7\-1500_cpu_1516f\-3_firmware, Simatic_s7\-1500_cpu_1516f\-3_pn\/dp_firmware, Simatic_s7\-1500_cpu_1516pro\-2_firmware, Simatic_s7\-1500_cpu_1516pro_f_firmware, Simatic_s7\-1500_cpu_1516t\-3_firmware, Simatic_s7\-1500_cpu_1516tf\-3_firmware, Simatic_s7\-1500_cpu_1517\-3_dp_firmware, Simatic_s7\-1500_cpu_1517\-3_firmware, Simatic_s7\-1500_cpu_1517\-3_pn\/dp_firmware, Simatic_s7\-1500_cpu_1517\-3_pn_firmware, Simatic_s7\-1500_cpu_1517f\-3_firmware, Simatic_s7\-1500_cpu_1517f\-3_pn\/dp_firmware, Simatic_s7\-1500_cpu_1517tf\-3_firmware, Simatic_s7\-1500_cpu_1518\-4_dp_firmware, Simatic_s7\-1500_cpu_1518\-4_firmware, Simatic_s7\-1500_cpu_1518\-4_pn\/dp_firmware, Simatic_s7\-1500_cpu_1518\-4_pn\/dp_mfp_firmware, Simatic_s7\-1500_cpu_1518\-4_pn_firmware, Simatic_s7\-1500_cpu_1518_firmware, Simatic_s7\-1500_cpu_1518f\-4_firmware, Simatic_s7\-1500_cpu_1518f\-4_pn\/dp_firmware, Simatic_s7\-1500_cpu_1518hf\-4_firmware, Simatic_s7\-1500_cpu_1518t\-4_firmware, Simatic_s7\-1500_cpu_1518tf\-4_firmware, Simatic_s7\-1500_cpu_15pro\-2_firmware, Simatic_s7\-1500_cpu_15prof\-2_firmware, Simatic_s7\-1500_cpu_cpu_1513pro\-2_firmware, Simatic_s7\-1500_cpu_cpu_1513prof\-2_firmware, Simatic_s7\-1500_software_controller, Simatic_s7\-400_pn\/dp_v6_firmware, Simatic_s7\-400_pn\/dp_v7_firmware, Simatic_s7\-Plcsim_advanced, Simatic_wincc_runtime, Sinumerik_one_firmware
|
6.5
|
|
|
2021-08-27
|
CVE-2021-40142
|
In OPC Foundation Local Discovery Server (LDS) before 1.04.402.463, remote attackers can cause a denial of service (DoS) by sending carefully crafted messages that lead to Access of a Memory Location After the End of a Buffer.
|
Local_discover_server, Simatic_net_pc, Simatic_process_historian_opc_ua_server_firmware, Simatic_wincc, Simatic_wincc_runtime, Simatic_wincc_unified_scada_runtime, Telecontrol_server_basic
|
7.5
|
|
|
2019-08-13
|
CVE-2019-10929
|
A vulnerability has been identified in SIMATIC CP 1626 (All versions), SIMATIC ET 200SP Open Controller CPU 1515SP PC (incl. SIPLUS variants) (All versions), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) (All versions < V20.8), SIMATIC HMI Panel (incl. SIPLUS variants) (All versions), SIMATIC NET PC Software V14 (All versions < V14 SP1 Update 14), SIMATIC NET PC Software V15 (All versions), SIMATIC S7-1200 CPU family (incl. SIPLUS variants) (All versions < V4.4.0),...
|
Simatic_cp_1626_firmware, Simatic_et_200sp_open_controller_cpu_1515sp_pc2_firmware, Simatic_et_200sp_open_controller_cpu_1515sp_pc_firmware, Simatic_hmi_panel_firmware, Simatic_net_pc, Simatic_s7\-1200_cpu_1211c_firmware, Simatic_s7\-1200_cpu_1212c_firmware, Simatic_s7\-1200_cpu_1214c_firmware, Simatic_s7\-1200_cpu_1215c_firmware, Simatic_s7\-1200_cpu_1217c_firmware, Simatic_s7\-1500, Simatic_s7\-1500_cpu_1511c_firmware, Simatic_s7\-1500_cpu_1512c_firmware, Simatic_s7\-1500_cpu_1518_firmware, Simatic_s7\-Plcsim_advanced, Simatic_step_7, Simatic_tim_1531_irc_firmware, Simatic_wincc, Simatic_wincc_open_architecture, Simatic_wincc_runtime
|
5.9
|
|
|