The Siemens SIMATIC WinCC Sm@rtClient app before 1.0.2 for iOS allows local users to bypass an intended application-password requirement by leveraging the running of the app in the background state.
References
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2015-01-14 03:59
Updated : 2015-11-13 08:52
NVD link : CVE-2014-5232
Mitre link : CVE-2014-5232
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
apple
- iphone_os
siemens
- simatic_wincc_sm\@rtclient