Release date:
Updated on:
Affected Systems:
Siemens WINCC 7.0 SP3
Description:
--------------------------------------------------------------------------------
Bugtraq id: 53837
Cve id: CVE-2012-2595, CVE-2012-2596, CVE-2012-2597, CVE-2012-2598, CVE-2012-3003
WinCC flexible is a human-machine interface used in some machine or process applications.
Siemens SIMATIC WinCC Flexible does not filter out special characters when parsing URL parameters. There are multiple security vulnerabilities in implementation. Attackers can exploit these vulnerabilities to execute arbitrary script code and read system files, redirects a user to a malicious site, accesses or modifies XML document data, or causes a denial of service.
<* Source: Andrey Medov
Link: http://www.us-cert.gov/control_systems/pdf/ICSA-12-158-01.pdf
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Siemens
-------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.automation.siemens.com/mcms/automation/en/