AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2014-4686

MEDIUM · CVSS 6.8 EPSS 1.09%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2014-07-24 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2014-4686
Severity
MEDIUM
CVSS
6.8
EPSS
1.09%

Original NVD Description

The Project administration application in Siemens SIMATIC WinCC before 7.3, as used in PCS7 and other products, has a hardcoded encryption key, which allows remote attackers to obtain sensitive information by extracting this key from another product installation and then employing this key during the sniffing of network traffic on TCP port 1030.