NetBIOS User Enumeration Vulnerability in Siemens WinCC
CVE-2013-3959

Currently unrated

Key Information:

Vendor

Siemens

Vendor
CVE Published:
14 June 2013

What is CVE-2013-3959?

The Web Navigator in Siemens WinCC versions prior to 7.2 Update 1 displays inconsistent behavior with NetBIOS user names, contingent upon the existence of user accounts. This discrepancy enables remote authenticated users to exploit crafted URL parameters to enumerate user account names, posing a significant security risk for organizations relying on these systems. As a result, unverified users might gain insights into account structures, potentially leading to further exploitation or breaches.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.