Path Traversal Vulnerability in Siemens Totally Integrated Automation Portal
CVE-2023-26293
7.3HIGH
Key Information:
What is CVE-2023-26293?
A path traversal vulnerability has been discovered in Siemens' Totally Integrated Automation Portal, impacting various versions. This flaw could allow an attacker to write or modify arbitrary files within the engineering system. If users inadvertently open a compromised PC system configuration file, it may lead to unauthorized code execution, posing significant security risks.
Affected Version(s)
Totally Integrated Automation Portal (TIA Portal) V15 0
Totally Integrated Automation Portal (TIA Portal) V16 0
Totally Integrated Automation Portal (TIA Portal) V17 0