Know-How Protection Flaw in Siemens Totally Integrated Automation Portal Products
CVE-2023-30757
Key Information:
What is CVE-2023-30757?
A critical vulnerability exists within Siemens Totally Integrated Automation Portal products that impacts the know-how protection feature. When project files are updated, the encryption for existing program blocks is not properly refreshed, permitting attackers with access to the project files to retrieve older, unprotected versions of the project. This unauthorized access occurs without requiring the know-how protection password, posing a significant risk to the confidentiality and integrity of sensitive automation data.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Totally Integrated Automation Portal (TIA Portal) V14 0
Totally Integrated Automation Portal (TIA Portal) V15 0
Totally Integrated Automation Portal (TIA Portal) V15.1 0
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved