CVE-2014-4683: Medium severity siemens simatic pcs 7 vulnerability
The WebNavigator server in Siemens SIMATIC WinCC before 7.3, as used in PCS7 and other products, allows remote authenticated users to gain privileges via a (1) HTTP or (2) HTTPS request.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-4683?
CVE-2014-4683 is rated as a high-severity vulnerability due to its potential for privilege escalation by authenticated users.
How do I fix CVE-2014-4683?
To mitigate CVE-2014-4683, ensure that you are using Siemens SIMATIC WinCC version 7.3 or later as the software has addressed this vulnerability.
Who is affected by CVE-2014-4683?
CVE-2014-4683 affects users of Siemens SIMATIC WinCC versions prior to 7.3 and specific versions of PCS7.
What types of requests can exploit CVE-2014-4683?
CVE-2014-4683 can be exploited through both HTTP and HTTPS requests from remote authenticated users.
What are the potential impacts of CVE-2014-4683?
Exploitation of CVE-2014-4683 could allow unauthorized privilege escalation, potentially leading to unauthorized access to system functions.