TROYANOSYVIRUS
Volver a CVEs

CVE-2020-7592

MEDIUM
6.5

Descripcion

A vulnerability has been identified in SIMATIC HMI Basic Panels 1st Generation (incl. SIPLUS variants) (All versions), SIMATIC HMI Basic Panels 2nd Generation (incl. SIPLUS variants) (All versions), SIMATIC HMI Comfort Panels (incl. SIPLUS variants) (All versions), SIMATIC HMI KTP700F Mobile Arctic (All versions), SIMATIC HMI Mobile Panels 2nd Generation (All versions), SIMATIC WinCC Runtime Advanced (All versions). Unencrypted communication between the configuration software and the respective device could allow an attacker to capture potential plain text communication and have access to sensitive information.

Detalles CVE

Puntuacion CVSS v3.16.5
SeveridadMEDIUM
Vector CVSSCVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Vector de ataqueADJACENT_NETWORK
ComplejidadLOW
Privilegios requeridosNONE
Interaccion usuarioNONE
Publicado7/14/2020
Ultima modificacion11/21/2024
Fuentenvd
Avistamientos honeypot0

Productos afectados

siemens:simatic_hmi_basic_panels_1st_generationsiemens:simatic_hmi_basic_panels_2nd_generationsiemens:simatic_hmi_comfort_panelssiemens:simatic_hmi_comfort_panels_firmwaresiemens:simatic_hmi_ktp700f_mobile_arcticsiemens:simatic_hmi_ktp700f_mobile_arctic_firmwaresiemens:simatic_hmi_mobile_panels_2nd_generationsiemens:simatic_hmi_mobile_panels_2nd_generation_firmwaresiemens:simatic_wincc_runtime_advanced

Debilidades (CWE)

CWE-319CWE-319

Correlaciones IOC

Sin correlaciones registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.