CVE-2013-0674

Siemens SIMATIC PCS7 < 8.0 and WinCC < 7.2 - Remote Code Execution via RegReader ActiveX Control

Title source: llm
STIX 2.1

Description

Buffer overflow in the RegReader ActiveX control in Siemens WinCC before 7.2, as used in SIMATIC PCS7 before 8.0 SP1 and other products, allows remote attackers to execute arbitrary code via a long parameter.

References (2)

Core 2

Scores

EPSS 0.0271
EPSS Percentile 86.1%

Details

CWE
CWE-119
Status published
Products (6)
siemens/simatic_pcs7 7.1 sp3
siemens/simatic_pcs7 < 8.0
siemens/wincc 5.0 (2 CPE variants)
siemens/wincc 6.0 (4 CPE variants)
siemens/wincc 7.0 (4 CPE variants)
siemens/wincc < 7.1
Published Mar 21, 2013
Tracked Since Feb 18, 2026