Our takeCISA reports a reflected XSS in Siemens Teamcenter's authentication redirect that lets an unauthenticated remote attacker inject JavaScript into an authenticated session. Siemens has released a patch; apply it now.Cyber Resilience desk
Sources (1)
- cisa_advisories · cisa_advisories
What this means for you — Security leader:Update all Siemens Teamcenter instances to the latest version immediately. The CISA advisory confirms a reflected XSS in the /auth/ redirect that lets unauthenticated attackers inject JavaScript into authenticated sessions.
What this means for you — Lean IT orgs:If you run Siemens Teamcenter, update it to the latest version right away. This flaw lets attackers run JavaScript in your users' sessions through a crafted link.
What this means for you — MSP:Audit client environments for Siemens Teamcenter deployments and apply the Siemens patch as soon as possible. The CISA-listed reflected XSS in the authentication flow can be triggered by a malicious URL.
What this means for you — Researcher:Siemens Teamcenter carries a reflected XSS in its authentication redirect (/auth/) that can be triggered by unauthenticated attackers; CISA has listed it and Siemens has published updates.