Vulnerabilities · InfosecFeed Brief

Siemens LOGO! Soft Comfort

Vulnerabilities

What you need to know

Siemens LOGO! Soft Comfort contains multiple vulnerabilities in its project-file encryption and password handling mechanisms. A local attacker could exploit these vulnerabilities to extract the master key, allowing them to decrypt project data or remove project passwords. The lack of password salting enables offline dictionary or brute-force attacks…

Source transparency

This is an InfosecFeed curated brief based on reporting from CISA Alerts. InfosecFeed does not claim ownership of the original reporting.

Read the original report at CISA Alerts ↗