NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
23862  CVE-2015-1595  The Siemens SPCanywhere application for Android and iOS does not use encryption during lookups of system ID to IP address mappings, which allows man-in-the-middle attackers to discover alarm IP addresses and spoof servers by intercepting the client-server data stream.    4.3  Medium  2017-01-19  2015-07-15  View
23863  CVE-2015-1596  The Siemens SPCanywhere application for Android and iOS does not properly verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.    5.8  Medium  2017-01-19  2015-03-09  View
32966  CVE-2014-5231  The Siemens SIMATIC WinCC Sm@rtClient app before 1.0.2 for iOS allows physically proximate attackers to extract the password from storage via unspecified vectors.    2.1  Low  2017-01-19  2015-11-13  View
32968  CVE-2014-5233  The Siemens SIMATIC WinCC Sm@rtClient app before 1.0.2 for iOS allows physically proximate attackers to discover Sm@rtServer credentials by leveraging an error in the credential-processing mechanism.    1.9  Low  2017-01-19  2015-11-13  View
32967  CVE-2014-5232  The Siemens SIMATIC WinCC Sm@rtClient app before 1.0.2 for iOS allows local users to bypass an intended application-password requirement by leveraging the running of the app in the background state.    1.9  Low  2017-01-19  2015-11-13  View

Page 3134 of 17672, showing 5 records out of 88360 total, starting on record 15666, ending on 15670

Actions