Vulnerability CVE-2023-29106


Published: 2023-05-09

Description:
A vulnerability has been identified in SIMATIC Cloud Connect 7 CC712 (All versions >= V2.0 < V2.1), SIMATIC Cloud Connect 7 CC716 (All versions >= V2.0 < V2.1). The export endpoint is accessible via REST API without authentication. This could allow an unauthenticated remote attacker to download the files available via the endpoint.

Type:

CWE-200

(Information Exposure)

 References:
https://cert-portal.siemens.com/productcert/pdf/ssa-555292.pdf

Copyright 2026, cxsecurity.com

 

Back to Top