The SIMATIC WinCC DataMonitor web application of the affected products allows an authenticated user with network access to the WinCC DataMonitor application to upload arbitrary ASPX code.
Successful exploitation requires no user interaction and may impact the confidentiality, integrity, and availability of the affected device. The vulnerability is relevant only in situations where an attacker has access via the web interface but not to the directory structure.
Denial of service
Update to version:
SIMATIC PCS7 v8.2: Update WinCC to v7.4 SP1 Upd 11
SIMATIC PCS7 v9.0: Update WinCC to v7.4 SP1 Upd 11
SIMATIC WinCC v7.4: Update WinCC to v7.4 SP1 Upd 11
SIMATIC WinCC v7.5: Update WinCC to v7.5 Upd 3
SIMATIC WinCC v7.3: Update WinCC to v7.3 Upd 19
SIMATIC PCS7 v8.1: Update WinCC to v7.3 Upd 19
SIMATIC WinCC Runtime Professional v14: Update to v14 SP1 Upd 8