PT-2026-47730 · Siemens · Simatic Wincc Unified Pc Runtime
CVE-2026-24349
·
Published
2026-06-09
·
Updated
2026-06-26
CVSS v3.1
7.1
High
| Vector | AV:L/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
SIMATIC WinCC Unified PC Runtime versions V16 through V20
SIMATIC WinCC Unified PC Runtime versions prior to V21 Update 2
Description
Insufficient protection of key material in the WinCC Certificate Manager could allow an attacker to extract sensitive information.
Recommendations
Update SIMATIC WinCC Unified PC Runtime V16, V17, V18, V19, and V20 to a version that contains the fix.
Update SIMATIC WinCC Unified PC Runtime V21 to V21 Update 2 or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Simatic Wincc Unified Pc Runtime