CVE-2016-5849: Infoleak
Published Jul 4, 2016
·Updated
Siemens SICAM PAS through 8.07 allows local users to obtain sensitive configuration information by leveraging database stoppage.
Affected Software
1 affected component
Siemens Sicam Pas\/pqs<=8.07
Event History
Jul 4, 2016
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-5849?
CVE-2016-5849 is classified as a medium severity vulnerability.
2
How do I fix CVE-2016-5849?
To mitigate CVE-2016-5849, ensure you upgrade Siemens SICAM PAS to version 8.08 or later.
3
What types of information can be accessed through CVE-2016-5849?
CVE-2016-5849 can allow local users to access sensitive configuration information from the database.
4
Which versions of Siemens SICAM PAS are affected by CVE-2016-5849?
CVE-2016-5849 affects Siemens SICAM PAS versions up to and including 8.07.
5
Is CVE-2016-5849 a local or remote vulnerability?
CVE-2016-5849 is a local vulnerability that requires local access to exploit.