CVE-2014-1696: Siemens SIMATIC Wincc Open Architecture

Medium severity, CVSS 5.0. EPSS: 1.7% chance of exploitation in the next 30 days.

Siemens SIMATIC WinCC OA before 3.12 P002 January uses a weak hash algorithm for passwords, which makes it easier for remote attackers to obtain access via a brute-force attack.

Affected products

  • Siemens SIMATIC Wincc Open Architecture: up to and including 3.12

Published 2014-02-07. Last modified 2026-06-17.