CVE-2017-6866: Siemens Xhq Server
Medium severity, CVSS 6.5. EPSS: 1.1% chance of exploitation in the next 30 days.
A vulnerability was discovered in Siemens XHQ server 4 and 5 (4 before V4.7.1.3 and 5 before V5.0.0.2) that could allow an authenticated low-privileged remote user to gain read access to data in the XHQ solution exceeding his configured permission level.
Affected products
- Siemens Xhq Server: up to and including 4.7.1.2; up to and including 5.0.0.1
Published 2017-08-07. Last modified 2026-06-17.