A vulnerability has been identified in TIA Administrator (All versions < V3 SP2). The affected component creates temporary download files in a directory with insecure permissions. This could allow any authenticated attacker on Windows to disrupt the update process.
| Software | From | Fixed in |
|---|---|---|
| siemens / tia_administrator | - | 3.0 |
| siemens / tia_administrator | 3.0 | 3.0.x |
| siemens / tia_administrator | 3.0-sp1 | 3.0-sp1.x |