Beveiligingsadvies

CVE-2023-46096

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-11-14 11:04:17
Laatst bijgewerkt 2025-01-08 16:38:00
Toegewezen door siemens
CVSS-score 6.5
Status PUBLISHED

Beschrijving

A vulnerability has been identified in SIMATIC PCS neo (All versions < V4.1). The PUD Manager of affected products does not properly authenticate users in the PUD Manager web service. This could allow an unauthenticated adjacent attacker to generate a privileged token and upload additional documents.