Security Advisory

CVE-2015-1356

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2015-02-18 02:00:00
Last updated 2024-08-06 04:40:18
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Siemens SIMATIC STEP 7 (TIA Portal) before 13 SP1 determines a user's privileges on the basis of project-file fields that lack integrity protection, which allows remote attackers to establish arbitrary authorization data via a modified file.