CVE-2017-2684: Siemens SIMATIC Logon
Critical severity, CVSS 9.0. EPSS: 2% chance of exploitation in the next 30 days.
Siemens SIMATIC Logon prior to V1.5 SP3 Update 2 could allow an attacker with knowledge of a valid user name, and physical or network access to the affected system, to bypass the application-level authentication.
Affected products
- Siemens SIMATIC Logon: up to and including 1.5
Published 2017-02-22. Last modified 2026-06-17.