CVE-2015-5084: Infoleak
The Siemens SIMATIC WinCC Sm@rtClient and Sm@rtClient Lite applications before 01.00.01.00 for Android do not properly store passwords, which allows physically proximate attackers to obtain sensitive information via unspecified vectors.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2015-5084?
CVE-2015-5084 is considered a medium severity vulnerability due to its potential to expose sensitive information.
How do I fix CVE-2015-5084?
To fix CVE-2015-5084, update to version 01.00.01.00 or later of Siemens SIMATIC WinCC Sm@rtClient or Sm@rtClient Lite for Android.
What impact does CVE-2015-5084 have on my system?
CVE-2015-5084 can allow physically proximate attackers to retrieve stored passwords, compromising user security.
Which versions are affected by CVE-2015-5084?
CVE-2015-5084 affects all versions of Siemens SIMATIC WinCC Sm@rtClient and Sm@rtClient Lite for Android prior to version 01.00.01.00.
Is CVE-2015-5084 a local or remote vulnerability?
CVE-2015-5084 is primarily a local vulnerability, as it requires physical proximity to the affected device.