PT-2015-1327 · Siemens · Simatic S7-1200 Cpu

Published

2015-01-21

·

Updated

2020-02-10

·

CVE-2015-1048

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Siemens SIMATIC S7-1200 CPU devices with firmware prior to 4.1
Description The issue allows a remote attacker to redirect users to arbitrary web sites, potentially leading to phishing attacks. This is achieved through an open redirect vulnerability in the integrated web server.
Recommendations For Siemens SIMATIC S7-1200 CPU devices with firmware prior to 4.1, update the firmware to version 4.1 or later to resolve the issue. As a temporary workaround, consider restricting access to the integrated web server to minimize the risk of exploitation.

Fix

Open Redirect

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-10401
CVE-2015-1048

Affected Products

Simatic S7-1200 Cpu