Vulnerability Details CVE-2017-6870
A vulnerability was discovered in Siemens SIMATIC WinCC Sm@rtClient for Android (All versions before V1.0.2.2). The existing TLS protocol implementation could allow an attacker to read and modify data within a TLS session while performing a Man-in-the-Middle (MitM) attack.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 47.2%
CVSS Severity
CVSS v3 Score 7.4
CVSS v2 Score 5.8
Products affected by CVE-2017-6870
-
cpe:2.3:a:siemens:simatic_wincc_sm@rtclient:1.0
-
cpe:2.3:a:siemens:simatic_wincc_sm@rtclient:1.0.2.1