Jameel Nabbo

3 exploits Active since Apr 2014
CVE-2015-5698 EXPLOITDB text WORKING POC
Siemens SIMATIC S7-1200 <4.1.3 - CSRF
Cross-site request forgery (CSRF) vulnerability in the web server on Siemens SIMATIC S7-1200 CPU devices with firmware before 4.1.3 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
CVE-2014-2908 EXPLOITDB text WORKING POC
SIMATIC S7-1200 CPU 2.x-3.x - Cross-Site Scripting
Cross-site scripting (XSS) vulnerability in the integrated web server on Siemens SIMATIC S7-1200 CPU devices 2.x and 3.x allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CVE-2014-5074 EXPLOITDB python WORKING POC
Siemens SIMATIC S7-1500 CPU Firmware < 1.6 - Denial of Service via Crafted TCP Packets
Siemens SIMATIC S7-1500 CPU devices with firmware before 1.6 allow remote attackers to cause a denial of service (device restart and STOP transition) via crafted TCP packets.