CVE-2014-4684

Siemens SIMATIC WinCC <7.3 - Privilege Escalation

Title source: llm
STIX 2.1

Description

The database server in Siemens SIMATIC WinCC before 7.3, as used in PCS7 and other products, allows remote authenticated users to gain privileges via a request to TCP port 1433.

References (1)

Core 1

Scores

EPSS 0.0037
EPSS Percentile 58.7%

Details

CWE
CWE-264
Status published
Products (8)
siemens/simatic_pcs7 7.1 sp3
siemens/simatic_pcs7 8.0
siemens/simatic_pcs7 < 8.0
siemens/wincc 5.0 (2 CPE variants)
siemens/wincc 6.0 (4 CPE variants)
siemens/wincc 7.0 (4 CPE variants)
siemens/wincc 7.1 (2 CPE variants)
siemens/wincc < 7.2
Published Jul 24, 2014
Tracked Since Feb 18, 2026