Siemens SIMATIC Logon Detection

info Nessus Plugin ID 97667

Synopsis

A logon service for SCADA applications is running on the remote host.

Description

The Siemens SIMATIC Logon service is running on the remote host. This service provides central access protection for SIMATIC applications and plant areas.

This plugin attempts to anonymously access the ISLSLogon interface of the Component Object Model (COM) class SLSLogon. If the COM security on the remote host is configured to disable anonymous access (i.e., using dcomcnfg.exe), the plugin will not able to detect the SIMATIC Logon service.

See Also

http://www.nessus.org/u?a43c9bd2

Plugin Details

Severity: Info

ID: 97667

File Name: scada_siemens_simatic_logon_detect.nbin

Version: 1.176

Type: remote

Family: SCADA

Published: 3/10/2017

Updated: 4/15/2024

Asset Inventory: true

Supported Sensors: Nessus

Vulnerability Information

CPE: x-cpe:/a:siemens:simatic_logon