Vulnerability Description
A vulnerability in Siemens SICAM PAS (all versions before V8.09) could allow a remote attacker to upload, download, or delete files in certain parts of the file system by sending specially crafted packets to port 19235/TCP.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Siemens | Sicam Pas\/Pqs | < 8.09 |
Related Weaknesses (CWE)
References
- http://www.securityfocus.com/bid/94549Third Party AdvisoryVDB Entry
- http://www.siemens.com/cert/pool/cert/siemens_security_advisory_ssa-946325.pdfVendor Advisory
- http://www.securityfocus.com/bid/94549Third Party AdvisoryVDB Entry
- http://www.siemens.com/cert/pool/cert/siemens_security_advisory_ssa-946325.pdfVendor Advisory
FAQ
What is CVE-2016-9156?
CVE-2016-9156 is a vulnerability with a CVSS score of 7.3 (HIGH). A vulnerability in Siemens SICAM PAS (all versions before V8.09) could allow a remote attacker to upload, download, or delete files in certain parts of the file system by sending specially crafted pac...
How severe is CVE-2016-9156?
CVE-2016-9156 has been rated HIGH with a CVSS base score of 7.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2016-9156?
Check the references section above for vendor advisories and patch information. Affected products include: Siemens Sicam Pas\/Pqs.