CVE-2023-46098

CVSS V2 None CVSS V3 None
Description
A vulnerability has been identified in SIMATIC PCS neo (All versions < V4.1). When accessing the Information Server from affected products, the products use an overly permissive CORS policy. This could allow an attacker to trick a legitimate user to trigger unwanted behavior.
Overview
  • CVE ID
  • CVE-2023-46098
  • Assigner
  • siemens
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2023-11-14T11:04:20.174Z
  • Last Modified Date
  • 2023-11-14T11:04:20.174Z
References
History
Created Old Value New Value Data Type Notes
2024-06-24 22:47:38 Added to TrackCVE