VYPR

SIMATIC STEP7

by Siemens Foundation

CVEs (22)

  • CVE-2015-1355Feb 18, 2015
    risk 0.00cvss epss 0.00

    Siemens SIMATIC STEP 7 (TIA Portal) before 13 SP1 uses a weak password-hash algorithm, which makes it easier for local users to determine cleartext passwords by reading a project file and conducting a brute-force attack.

  • CVE-2012-3015Jul 26, 2012
    risk 0.00cvss epss 0.00

    Untrusted search path vulnerability in Siemens SIMATIC STEP7 before 5.5 SP1, as used in SIMATIC PCS7 7.1 SP3 and earlier and other products, allows local users to gain privileges via a Trojan horse DLL in a STEP7 project folder.

Page 2 of 2