Remote Code Execution Vulnerability in Siemens SIMATIC S7-1200 CPU Devices
CVE-2016-2846

6.5MEDIUM

Key Information:

Vendor
Siemens
Vendor
CVE Published:
16 March 2016

Summary

The vulnerability allows remote attackers to exploit Siemens SIMATIC S7-1200 CPU devices prior to version 4.0 by bypassing the user program block protection mechanism. This can enable unauthorized access to device functionalities, potentially leading to manipulation of system processes and disruption of critical operations.

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.