Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The login implementation in the Web Navigator in Siemens WinCC before 7.2 Update 1, as used in SIMATIC PCS7 8.0 SP1 and earlier and other products, has a hardcoded account, which makes it easier for remote attackers to obtain access via an unspecified request.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SIMATIC PCS7 Siemens WinCC Web Navigator 登录实现安全漏洞
Vulnerability Description
Siemens SIMATIC WinCC是德国西门子(Siemens)公司的一套自动化的数据采集与监控(SCADA)系统。该系统提供过程监视、数据采集等功能。 SIMATIC PCS7 8.0 SP1及更早版本和其它产品中所使用的Siemens WinCC 7.2 Update 1及之前版本中的Web Navigator中的登录实现中存在漏洞,该漏洞源于程序具备硬编码账户。远程攻击者可通过未指明的请求利用该漏洞获取访问权限。
CVSS Information
N/A
Vulnerability Type
N/A