PT-2026-47730 · Siemens · Simatic Wincc Unified Pc Runtime

CVE-2026-24349

·

Published

2026-06-09

·

Updated

2026-06-26

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions SIMATIC WinCC Unified PC Runtime versions V16 through V20 SIMATIC WinCC Unified PC Runtime versions prior to V21 Update 2
Description Insufficient protection of key material in the WinCC Certificate Manager could allow an attacker to extract sensitive information.
Recommendations Update SIMATIC WinCC Unified PC Runtime V16, V17, V18, V19, and V20 to a version that contains the fix. Update SIMATIC WinCC Unified PC Runtime V21 to V21 Update 2 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-08602
CVE-2026-24349

Affected Products

Simatic Wincc Unified Pc Runtime