Vulnerabilities
Vulnerable Software
Siemens:  >> Simatic Pcs7  >> 8.0  Security Vulnerabilities
Multiple cross-site scripting (XSS) vulnerabilities in WebNavigator in Siemens WinCC 7.0 SP3 and earlier, as used in SIMATIC PCS7 and other products, allow remote attackers to inject arbitrary web script or HTML via a (1) GET parameter, (2) POST parameter, or (3) Referer HTTP header.
CVSS Score
4.3
EPSS Score
0.006
Published
2012-09-18
SQL injection vulnerability in WebNavigator in Siemens WinCC 7.0 SP3 and earlier, as used in SIMATIC PCS7 and other products, allows remote attackers to execute arbitrary SQL commands via a crafted SOAP message.
CVSS Score
7.5
EPSS Score
0.005
Published
2012-09-18
WebNavigator in Siemens WinCC 7.0 SP3 and earlier, as used in SIMATIC PCS7 and other products, allows remote attackers to discover a username and password via crafted parameters to unspecified methods in ActiveX controls.
CVSS Score
4.3
EPSS Score
0.005
Published
2012-09-18


Contact Us

Shodan ® - All rights reserved