Beckhoff.IPC.Diagnostics.SOAP.Authentication.Bypass

description-logoDescription

This indicates an attack attempt to exploit an Authentication Bypass vulnerability in Beckhoff IPC Diagnostics.
A remote unauthenticated attacker could exploit this vulnerability by sending a crafted HTTP request to the vulnerable server. An attacker can exploit this to add new user with administrator privileges in the affected system.

affected-products-logoAffected Products

Beckhoff IPC Diagnostics prior to 1.8

Impact logoImpact

Security Bypass: Remote attackers can bypass security features of vulnerable systems without authentication.

recomended-action-logoRecommended Actions

Currently we are unaware of any vendor supplied patch or updates available for this issue.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2020-01-23 15.764 Default_action:pass:drop
2020-01-08 15.754