Open redirect in Siemens products - CVE-2018-13813

 

Open redirect in Siemens products - CVE-2018-13813

Published: November 14, 2018


Vulnerability identifier: #VU15888
CSH Severity: Low
CVSS v4: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2018-13813
CWE-ID: CWE-601
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to redirect victims to arbitrary URI.

The vulnerability exists due to improper sanitization of user-supplied data. A remote attacker can create a link that leads to a trusted website, however, when clicked, redirects the victim to arbitrary URI.

Successful exploitation of this vulnerability may allow a remote attacker to perform a phishing attack and steal potentially sensitive information


Affected software

Siemens SIMATIC WinCC
SIMATIC HMI MP Mobile Panel
SIMATIC HMI OP
SIMATIC HMI MP
SIMATIC HMI TP
SIMATIC WinCC Runtime Advanced
SIMATIC HMI KTP900F
SIMATIC HMI KTP900
SIMATIC HMI KTP700F
SIMATIC HMI KTP700
SIMATIC HMI KTP400F
SIMATIC HMI Comfort Outdoor Panels 7” & 15”
SIMATIC HMI Comfort Panels 4”-22”
SIMATIC WinCC Runtime Professional

How to mitigate CVE-2018-13813

Update the affected products to version 15 Update 4.

Siemens SIMATIC WinCC - update to 15 Update 4
SIMATIC HMI MP Mobile Panel - update to 15 Update 4
SIMATIC HMI OP - update to 15 Update 4
SIMATIC HMI MP - update to 15 Update 4
SIMATIC HMI TP - update to 15 Update 4
SIMATIC WinCC Runtime Advanced - update to 15 Update 4
SIMATIC HMI KTP900F - update to 15 Update 4
SIMATIC HMI KTP900 - update to 15 Update 4
SIMATIC HMI KTP700F - update to 15 Update 4
SIMATIC HMI KTP700 - update to 15 Update 4
SIMATIC HMI KTP400F - update to 15 Update 4
SIMATIC HMI Comfort Outdoor Panels 7” & 15” - update to 15 Update 4
SIMATIC HMI Comfort Panels 4”-22” - update to 15 Update 4
SIMATIC WinCC Runtime Professional - update to 15 Update 4

External References

Related Security Bulletins