Description
Siemens SIMATIC Logon prior to V1.5 SP3 Update 2 could allow an attacker with knowledge of a valid user name, and physical or network access to the affected system, to bypass the application-level authentication.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No solution or workaround provided in the CVE record.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-11827 | Siemens SIMATIC Logon prior to V1.5 SP3 Update 2 could allow an attacker with knowledge of a valid user name, and physical or network access to the affected system, to bypass the application-level authentication. |
References
History
No history.
Status: PUBLISHED
Assigner: siemens
Published:
Updated: 2024-08-05T14:02:07.219Z
Reserved: 2016-12-01T00:00:00.000Z
Link: CVE-2017-2684
No data.
Status : Modified
Published: 2017-02-22T02:59:00.153
Modified: 2026-06-17T01:16:39.757
Link: CVE-2017-2684
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-592
DEPRECATED: Authentication Bypass Issues
- NVD-CWE-noinfo
EUVD