• Services
    • Asses
      • Compromise Assessment
      • APT Assessment
      • Penetration Testing
      • Secure Architecture Design & Review
      • Red Team Assessment
      • Purple Team Assessment
      • Social Engineering
      • Source Code Review
    • Transform
      • SOC Consultancy
      •     SOC Maturity Assessment
      •     SOC Model Evaluation
      •     SOC Gap Analysis
      •     SIEM Gap Analysis
      •     SIEM Optimization
      •     SOC Content Pack
    • Train
      • Security Awareness and Training
      • Tabletop Exercise
      • Simulated Cyber Attack Exercises
    • Respond
      • Incident Response
      • Incident Analysis
  • Managed Security
    • Managed Security Monitoring
      • Remote SOC
      • Onsite SOC
      • Hybrid SOC
    • Managed Security Services
      • Managed Detection and Response
      • Managed Endpoint Detection and Response
      • Managed Threat Intelligence
      • Managed Threat Hunting
      • Managed Risk-Based SOAR
      • Managed Penetration Testing
  • Solutions
  • Resources
    • Blog
    • Threat Advisory
  • Company
    • About Us
    • Careers
    • Contact
Rewterz Threat Advisory – CVE-2017-9765 – OSIsoft PI SQL Client Privilege Escalation Vulnerability
September 11, 2019
Rewterz Threat Alert – Heatstroke Phishing Campaign
September 11, 2019

Rewterz Threat Advisory – CVE-2019-10935 – Siemens SIMATIC WinCC and PCS7 Denial of Service Vulnerability

September 11, 2019

Severity

Medium

Analysis Summary

The SIMATIC WinCC DataMonitor web application of the affected products allows an authenticated user with network access to the WinCC DataMonitor application to upload arbitrary ASPX code.
Successful exploitation requires no user interaction and may impact the confidentiality, integrity, and availability of the affected device. The vulnerability is relevant only in situations where an attacker has access via the web interface but not to the directory structure.

Impact

Denial of service

Affected Vendors

Siemens

Affected Products

  • SIMATIC PCS 7 v8.0: all versions
  • SIMATIC PCS 7 v8.1: all versions prior to v8.1 with WinCC v7.3 Upd 19
  • SIMATIC PCS 7 v8.2: all versions prior to v8.2 SP1 with WinCC v7.4 SP1 Upd 11
  • SIMATIC PCS 7 v9.0: all versions prior to v9.0 SP2 with WinCC v7.4 SP1 Upd 11
  • SIMATIC WinCC Professional (TIA Portal v13): all versions
  • SIMATIC WinCC Professional (TIA Portal v14): all versions
  • SIMATIC WinCC Professional (TIA Portal v15): all versions
  • SIMATIC WinCC Runtime Professional v13: all versions
  • SIMATIC WinCC Runtime Professional v14: all versions prior to v14 SP1 Upd 8

Remediation

Update to version:

SIMATIC PCS7 v8.2: Update WinCC to v7.4 SP1 Upd 11
SIMATIC PCS7 v9.0: Update WinCC to v7.4 SP1 Upd 11
SIMATIC WinCC v7.4: Update WinCC to v7.4 SP1 Upd 11
SIMATIC WinCC v7.5: Update WinCC to v7.5 Upd 3
SIMATIC WinCC v7.3: Update WinCC to v7.3 Upd 19
SIMATIC PCS7 v8.1: Update WinCC to v7.3 Upd 19
SIMATIC WinCC Runtime Professional v14: Update to v14 SP1 Upd 8

  • Services
    • Asses
      • Compromise Assessment
      • APT Assessment
      • Penetration Testing
      • Secure Architecture Design & Review
      • Red Team Assessment
      • Purple Team Assessment
      • Social Engineering
      • Source Code Review
    • Respond
      • Incident Response
      • Incident Analysis
  • Transform
    • SOC Consultancy
    •     SOC Maturity Assessment
    •     SOC Model Evaluation
    •     SOC Gap Analysis
    •     SIEM Gap Analysis
    •     SIEM Optimization
    •     SOC Content Pack
  • Train
    • Security Awareness and Training
    • Tabletop Exercise
    • Simulated Cyber Attack Exercises
  • Managed Security
    • Managed Security Monitoring
      • Remote SOC
      • Onsite SOC
      • Hybrid SOC
    • Managed Security Services
      • Managed Detection and Response
      • Managed Endpoint Detection and Response
      • Managed Threat Intelligence
      • Managed Threat Hunting
      • Managed Risk-Based SOAR
      • Managed Penetration Testing
  • Solutions
  • Resources
    • Blog
    • Threat Advisory
  • Company
    • About Us
    • Careers
    • Contact
COPYRIGHT © REWTERZ. ALL RIGHTS RESERVED.