← Back to browse · API

CVE-2023-51438

Severity
CRITICAL
CVSS
10.0
EPSS
0.00646
Risk score
40.23
CISA KEV
No
PoC
No
Published
2024-01-09
Modified
2025-05-22
First seen
2026-08-07
Aliases
EUVD-2023-56158, GHSA-R573-6CPV-HCWQ
Products
Siemens:SIMATIC IPC1047E, Siemens:SIMATIC IPC1047E All versions with maxView Storage Manager < V4.14.00.26068 on Windows, Siemens:SIMATIC IPC647E, Siemens:SIMATIC IPC647E All versions with maxView Storage Manager < V4.14.00.26068 on Windows, Siemens:SIMATIC IPC847E, Siemens:SIMATIC IPC847E All versions with maxView Storage Manager < V4.14.00.26068 on Windows
Sources
euvd EUVD-2023-56158

Description

A vulnerability has been identified in SIMATIC IPC1047E (All versions with maxView Storage Manager < V4.14.00.26068 on Windows), SIMATIC IPC647E (All versions with maxView Storage Manager < V4.14.00.26068 on Windows), SIMATIC IPC847E (All versions with maxView Storage Manager < V4.14.00.26068 on Windows). In default installations of maxView Storage Manager where Redfish® server is configured for remote system management, a vulnerability has been identified that can provide unauthorized access.

References