A vulnerability was discovered in Siemens ViewPort for Web Office Portal before revision number 1453 that could allow an unauthenticated remote user to upload arbitrary code and execute it with the permissions of the operating-system user running the web server by sending specially crafted network packets to port 443/TCP or port 80/TCP.
References
Link | Resource |
---|---|
https://www.siemens.com/cert/pool/cert/siemens_security_advisory_ssa-545214.pdf | Vendor Advisory |
http://www.securityfocus.com/bid/99343 | Third Party Advisory VDB Entry |
Configurations
Information
Published : 2017-08-07 17:29
Updated : 2019-10-09 16:29
NVD link : CVE-2017-6869
Mitre link : CVE-2017-6869
JSON object : View
CWE
Products Affected
siemens
- viewport_for_web_office_portal