漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
A vulnerability has been identified in SIMATIC STEP 7 (TIA Portal) V15 (All versions), SIMATIC STEP 7 (TIA Portal) V16 (All versions < V16 Update 5), SIMATIC STEP 7 (TIA Portal) V17 (All versions < V17 Update 2). An attacker could achieve privilege escalation on the web server of certain devices due to improper access control vulnerability in the engineering system software. The attacker needs to have direct access to the impacted web server.
CVSS Information
N/A
Vulnerability Type
访问控制不恰当
Vulnerability Title
Siemens SIMATIC 安全漏洞
Vulnerability Description
Siemens SIMATIC是西门子(Siemens)的一款组态软件。 Siemens SIMATIC STEP 7 (TIA Portal)存在安全漏洞,该漏洞源于在下载过程中对 Web 服务器的用户管理配置的错误处理。攻击者可以在某些设备的Web服务器上利用该漏洞实现权限提升。
CVSS Information
N/A
Vulnerability Type
N/A