Siemens

Sinec Nms

44 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.31%
  • Veröffentlicht 12.10.2021 10:15:12
  • Zuletzt bearbeitet 21.11.2024 06:09:28

A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). A privileged authenticated attacker could execute arbitrary commands in the local database by sending crafted requests to the webserver of the affected application.

  • EPSS 1.31%
  • Veröffentlicht 12.10.2021 10:15:12
  • Zuletzt bearbeitet 21.11.2024 06:09:28

A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). A privileged authenticated attacker could execute arbitrary commands in the local database by sending crafted requests to the webserver of the affected application.

  • EPSS 0.64%
  • Veröffentlicht 12.10.2021 10:15:12
  • Zuletzt bearbeitet 21.11.2024 06:09:28

A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). A privileged authenticated attacker could execute arbitrary commands in the local database by sending crafted requests to the webserver of the affected application.

  • EPSS 0.64%
  • Veröffentlicht 12.10.2021 10:15:12
  • Zuletzt bearbeitet 21.11.2024 06:09:28

A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). A privileged authenticated attacker could execute arbitrary commands in the local database by sending crafted requests to the webserver of the affected application.

  • EPSS 0.33%
  • Veröffentlicht 12.10.2021 10:15:11
  • Zuletzt bearbeitet 21.11.2024 06:09:27

A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). An authenticated attacker could download the user profile of any user. With this, the attacker could leak confidential information of any user in the affected system...

  • EPSS 0.45%
  • Veröffentlicht 12.10.2021 10:15:11
  • Zuletzt bearbeitet 21.11.2024 06:09:27

A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). The affected system allows to download arbitrary files under a user controlled path and does not correctly check if the relative path is still within the intended ta...

  • EPSS 0.84%
  • Veröffentlicht 12.10.2021 10:15:11
  • Zuletzt bearbeitet 21.11.2024 06:09:27

A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). The affected system allows to delete arbitrary files or directories under a user controlled path and does not correctly check if the relative path is still within th...

  • EPSS 0.84%
  • Veröffentlicht 12.10.2021 10:15:11
  • Zuletzt bearbeitet 21.11.2024 06:09:27

A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). The affected system contains an Arbitrary File Deletion vulnerability that possibly allows to delete an arbitrary file or directory under a user controlled path.

  • EPSS 0.15%
  • Veröffentlicht 12.10.2021 10:15:11
  • Zuletzt bearbeitet 21.11.2024 06:09:27

A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). An authenticated attacker could change the user profile of any user without proper authorization. With this, the attacker could change the password of any user in th...

  • EPSS 0.2%
  • Veröffentlicht 12.10.2021 10:15:11
  • Zuletzt bearbeitet 21.11.2024 06:09:26

A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). The affected system has a Path Traversal vulnerability when exporting a firmware container. With this a privileged authenticated attacker could create arbitrary file...