Security Advisory

CVE-2012-3037

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2012-09-25 10:00:00
Last updated 2025-05-23 18:26:16
Assigner icscert
State PUBLISHED

Description

The Siemens SIMATIC S7-1200 2.x PLC does not properly protect the private key of the SIMATIC CONTROLLER Certification Authority certificate, which allows remote attackers to spoof the S7-1200 web server by using this key to create a forged certificate.