A vulnerability has been identified in SIMATIC S7-1200 CPU family version 4 (All versions <V4.2.3).ThewebinterfacecouldallowaCross-SiteRequestForgery(CSRF)attackifanunsuspectinguseristrickedintoaccessingamaliciouslink.Successfulexploitationrequiresuserinteractionbyalegitimateuser,whomustbeauthenticatedtothewebinterface.Asuccessfulattackcouldallowanattackertotriggeractionsviathewebinterfacethatthelegitimateuserisallowedtoperform.Thiscouldallowtheattackertoreadormodifypartsofthedeviceconfiguration.