Device Reconfiguration Vulnerability in LOGO! 8 by Siemens
CVE-2019-10919
9.4CRITICAL
Key Information:
- Vendor
Siemens
- Vendor
- CVE Published:
- 14 May 2019
What is CVE-2019-10919?
A vulnerability in Siemens LOGO! 8, including SIPLUS variants, allows unauthorized access to port 10005/tcp. This flaw enables attackers to perform device reconfigurations and extract project files without authentication. With no user interaction needed, the attack can severely compromise the device's confidentiality, integrity, and availability. Users are advised to secure access to this port to mitigate potential risks.
Affected Version(s)
LOGO! 8 BM (incl. SIPLUS variants) All versions < V8.3