Man-in-the-Middle Vulnerability in Siemens LOGO! Soft Comfort Software
CVE-2017-12740
5.9MEDIUM
Key Information:
- Vendor
Siemens
- Vendor
- CVE Published:
- 26 December 2017
What is CVE-2017-12740?
Siemens LOGO! Soft Comfort software versions prior to V8.2 are susceptible to a vulnerability where the integrity of downloaded software packages is not verified. This flaw allows a remote attacker to exploit an unprotected communication channel to manipulate the software package. Such attacks can occur through a Man-in-the-Middle method, putting the integrity and security of the impacted systems at risk, as malicious actors can intervene during the download process and alter the software without detection.
Affected Version(s)
Siemens LOGO! Soft Comfort (All before V8.2) Siemens LOGO! Soft Comfort (All versions before V8.2)