High severity7.3NVD Advisory· Published Feb 13, 2017· Updated May 13, 2026
CVE-2017-5155
CVE-2017-5155
Description
An issue was discovered in Schneider Electric Wonderware Historian 2014 R2 SP1 P01 and earlier. Wonderware Historian creates logins with default passwords, which can allow a malicious entity to compromise Historian databases. In some installation scenarios, resources beyond those created by Wonderware Historian may be compromised as well.
Affected products
1- cpe:2.3:a:schneider-electric:wonderware_historian:2014_r2_sp1_p01:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- software.schneider-electric.com/pdf/security-bulletin/lfsec00000115/nvdVendor Advisory
- www.securityfocus.com/bid/95766nvdThird Party AdvisoryVDB Entry
- ics-cert.us-cert.gov/advisories/ICSA-17-024-01nvdMitigationThird Party AdvisoryUS Government Resource
- www.securitytracker.com/id/1037808nvd
News mentions
0No linked articles in our index yet.