Siemens SINUMERIK Integrate Operate Clients between 2.0.3.00.016 (including) and 2.0.6 (excluding) and between 3.0.4.00.032 (including) and 3.0.6 (excluding) contain a vulnerability that could allow an attacker to read and manipulate data in TLS sessions while performing a man-in-the-middle (MITM) attack.
2017-03-01T17:59:00.143
2025-04-20T01:37:25.860
Deferred
CVSSv3.0: 7.4 (HIGH)
AV:N/AC:M/Au:N/C:P/I:P/A:N
8.6
4.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | siemens | sinumerik_integrate_access_mymachine\/ethernet | - | Yes |
Application | siemens | sinumerik_integrate_operate_client | 2.0.3.00.016 | Yes |
Application | siemens | sinumerik_integrate_operate_client | 3.0.4.00.032 | Yes |
Application | siemens | sinumerik_operate | 4.5 | Yes |
Application | siemens | sinumerik_operate | 4.7 | Yes |