PT-2014-4584 · Siemens · Simatic S7-1500 Cpu
Ilya Karpov
·
Published
2014-03-16
·
Updated
2020-02-10
·
CVE-2014-2248
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Siemens SIMATIC S7-1500 CPU PLC devices versions prior to 1.5.0
Description
The issue concerns an open redirect vulnerability in the integrated web server. This vulnerability allows remote attackers to redirect users to arbitrary web sites, which can be used to conduct phishing attacks.
Recommendations
For versions prior to 1.5.0, update the firmware to version 1.5.0 or later to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Simatic S7-1500 Cpu