Siemens TeleControl Server Basic SQL Injection Vulnerability Allowing Database Access and Code Execution

Vulnerability

A SQL injection vulnerability has been identified in Siemens TeleControl Server Basic, affecting all versions prior to V3.1.2.2. The vulnerability arises in the 'ActivateProject' method, allowing authenticated remote attackers to bypass authorization controls, manipulate the application's database, and execute code with 'NT AUTHORITY\NetworkService' permissions. Exploitation requires access to port 8000 on the affected system.

Impact

Exploitation of this vulnerability could lead to unauthorized database access and manipulation, execution of code in the operating system shell with limited 'NT AUTHORITY\NetworkService' permissions, and potentially cause a denial-of-service condition.

Remediation

Users are advised to update TeleControl Server Basic to version V3.1.2.2 or later. For version 3.1.2.2, all occurrences of the vulnerability have been fixed. Additionally, restrict access to port 8000 on affected systems to trusted IP addresses only.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.3
impact
7.5
exploitability
4.9
remediation
7.9
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.