CVE-2015-5084: Siemens SIMATIC Wincc Sm@rtclient

Low severity, CVSS 2.1. EPSS: 0.4% chance of exploitation in the next 30 days.

The Siemens SIMATIC WinCC Sm@rtClient and Sm@rtClient Lite applications before 01.00.01.00 for Android do not properly store passwords, which allows physically proximate attackers to obtain sensitive information via unspecified vectors.

Affected products

  • Siemens SIMATIC Wincc Sm@rtclient: up to and including 1.0
  • Siemens SIMATIC Wincc Sm@rtclient Lite: up to and including 1.0

Published 2015-08-03. Last modified 2026-06-17.