PT-2020-11875 · Siemens · Sicam Mmu+2

Published

2020-07-14

·

Updated

2020-07-15

·

CVE-2020-10039

CVSS v3.1

8.1

High

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions SICAM MMU versions prior to V2.05 SICAM SGU (affected versions not specified) SICAM T versions prior to V2.18
Description A vulnerability has been identified that could allow an attacker in a privileged network position to conduct a Man-in-the-middle attack. This attack could potentially grant the attacker read and write access to the transmitted data.
Recommendations For SICAM MMU versions prior to V2.05, update to version V2.05 or later. For SICAM SGU, at the moment, there is no information about a newer version that contains a fix for this vulnerability. For SICAM T versions prior to V2.18, update to version V2.18 or later.

Missing Encryption of Sensitive Data

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-10039

Affected Products

Sicam Mmu
Sicam Sgu
Sicam T