First published: Mon Dec 05 2016(Updated: )
A vulnerability in Siemens SICAM PAS (all versions before V8.09) could allow a remote attacker to upload, download, or delete files in certain parts of the file system by sending specially crafted packets to port 19235/TCP.
Credit: productcert@siemens.com productcert@siemens.com
Affected Software | Affected Version | How to fix |
---|---|---|
Siemens SICAM PAS/PQS | <8.09 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-9156 is considered a high severity vulnerability due to the potential for remote file manipulation.
To mitigate CVE-2016-9156, upgrade to Siemens SICAM PAS version 8.09 or later.
Attackers can exploit CVE-2016-9156 to remotely upload, download, or delete files in specific areas of the file system.
All versions of Siemens SICAM PAS prior to version 8.09 are affected by CVE-2016-9156.
CVE-2016-9156 operates on port 19235/TCP.