First published: Wed Jan 21 2015(Updated: )
Open redirect vulnerability in the integrated web server on Siemens SIMATIC S7-1200 CPU devices with firmware before 4.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Siemens SIMATIC S7-1200 CPU | <=4.0 | |
Siemens SIMATIC S7-1200 CPU |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-1048 is considered a critical vulnerability due to its potential for enabling phishing attacks through open redirects.
To mitigate CVE-2015-1048, upgrade your Siemens SIMATIC S7-1200 CPU firmware to version 4.1 or later.
CVE-2015-1048 affects Siemens SIMATIC S7-1200 CPU devices with firmware versions prior to 4.1.
Yes, CVE-2015-1048 can be exploited remotely, allowing attackers to redirect users to arbitrary websites.
CVE-2015-1048 enables attackers to conduct phishing attacks through open redirect vulnerabilities.