CVE-2019-10934 - CVE House
Back to Database
Status published High CVE-2019-10934

A vulnerability has been identified in TIA Portal V14 (All...

Vulnerability Description

A vulnerability has been identified in TIA Portal V14 (All versions), TIA Portal V15 (All versions < V15.1 Update 7), TIA Portal V16 (All versions < V16 Update 6), TIA Portal V17 (All versions < V17 Update 4). Changing the contents of a configuration file could allow an attacker to execute arbitrary code with SYSTEM privileges. The security vulnerability could be exploited by an attacker with a valid account and limited access rights on the system. No user interaction is required. At the time of advisory publication no public exploitation of this security vulnerability was known.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2019-10934

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

TIA Portal V14, TIA Portal V15, TIA Portal V16, TIA Portal V17
Vulnerable Versions:
All versions, All versions < V15.1 Update 7, All versions < V16 Update 6, All versions < V17 Update 4

Timeline

Official Publish: January 16th, 2020
Last Modified: August 4th, 2024
Added to House: July 20th, 2026

CVSS Vectors

V3: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Weaknesses (CWE)