Siemens SICAM PAS before 8.07 does not properly restrict password data in the database, which makes it easier for local users to calculate passwords by leveraging unspecified database privileges.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/91525 | Third Party Advisory VDB Entry |
http://www.siemens.com/cert/pool/cert/siemens_security_advisory_ssa-444217.pdf | Vendor Advisory |
https://ics-cert.us-cert.gov/advisories/ICSA-16-182-02 | Third Party Advisory US Government Resource |
Configurations
History
No history.
Information
Published : 2016-07-04 16:59
Updated : 2024-02-04 18:53
NVD link : CVE-2016-5848
Mitre link : CVE-2016-5848
CVE.ORG link : CVE-2016-5848
JSON object : View
Products Affected
siemens
- sicam_pas\/pqs