NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 23862 | CVE-2015-1595 | The Siemens SPCanywhere application for Android and iOS does not use encryption during lookups of system ID to IP address mappings, which allows man-in-the-middle attackers to discover alarm IP addresses and spoof servers by intercepting the client-server data stream. | 2 | 4.3 | Medium | 2017-01-19 | 2015-07-15 | View | |
| 23863 | CVE-2015-1596 | The Siemens SPCanywhere application for Android and iOS does not properly verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | 2 | 5.8 | Medium | 2017-01-19 | 2015-03-09 | View | |
| 32966 | CVE-2014-5231 | The Siemens SIMATIC WinCC Sm@rtClient app before 1.0.2 for iOS allows physically proximate attackers to extract the password from storage via unspecified vectors. | 2 | 2.1 | Low | 2017-01-19 | 2015-11-13 | View | |
| 32968 | CVE-2014-5233 | The Siemens SIMATIC WinCC Sm@rtClient app before 1.0.2 for iOS allows physically proximate attackers to discover Sm@rtServer credentials by leveraging an error in the credential-processing mechanism. | 2 | 1.9 | Low | 2017-01-19 | 2015-11-13 | View | |
| 32967 | CVE-2014-5232 | The Siemens SIMATIC WinCC Sm@rtClient app before 1.0.2 for iOS allows local users to bypass an intended application-password requirement by leveraging the running of the app in the background state. | 2 | 1.9 | Low | 2017-01-19 | 2015-11-13 | View |
Page 3134 of 17672, showing 5 records out of 88360 total, starting on record 15666, ending on 15670