Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
siemens sinema server - vulnerabilities and exploits
(subscribe to this query)
9.3
CVSSv2
CVE-2022-32252
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). The application does not perform the integrity check of the update packages. Without validation, an admin user might be tricked to install a malicious package, granting root privileges t...
Siemens Sinema Remote Connect Server
9.3
CVSSv2
CVE-2014-2731
Multiple unspecified vulnerabilities in the integrated web server in Siemens SINEMA Server prior to 12 SP1 allow remote malicious users to execute arbitrary code via HTTP traffic to port (1) 4999 or (2) 80.
Siemens Sinema Server
2 Github repositories
9
CVSSv2
CVE-2021-45960
In Expat (aka libexpat) prior to 2.4.3, a left shift by 29 (or more) places in the storeAtts function in xmlparse.c can lead to realloc misbehavior (e.g., allocating too few bytes, or only freeing memory).
Libexpat Project Libexpat
Tenable Nessus
Debian Debian Linux 10.0
Debian Debian Linux 11.0
Siemens Sinema Remote Connect Server
Netapp Oncommand Workflow Automation -
Netapp Solidfire \\& Hci Management Node -
Netapp Active Iq Unified Manager -
Netapp Hci Baseboard Management Controller H610c
Netapp Hci Baseboard Management Controller H610s
Netapp Hci Baseboard Management Controller H615c
9
CVSSv2
CVE-2019-10940
A vulnerability has been identified in SINEMA Server (All versions < V14.0 SP2 Update 1). Incorrect session validation could allow an attacker with a valid session, with low privileges, to perform firmware updates and other administrative operations on connected devices. The s...
Siemens Sinema Server
Siemens Sinema Server 14.0
9
CVSSv2
CVE-2019-6570
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V2.0). Due to insufficient checking of user permissions, an attacker may access URLs that require special authorization. An attacker must have access to a low privileged account in order to exp...
Siemens Sinema Remote Connect Server
7.8
CVSSv2
CVE-2019-6575
A vulnerability has been identified in SIMATIC CP 443-1 OPC UA (All versions), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) (All versions < V2.7), SIMATIC HMI Comfort Outdoor Panels 7" & 15" (incl. SIPLUS variants) (All versions < V1...
Siemens Simatic Cp443-1 Opc Ua Firmware
Siemens Simatic Et 200 Open Controller Cpu 1515sp Pc2 Firmware
Siemens Simatic Ipc Diagmonitor Firmware
Siemens Simatic Net Pc Software Firmware
Siemens Simatic Rf188c Firmware
Siemens Simatic Rf600r Firmware
Siemens Simatic S7-1500 Firmware
Siemens Sinumerik Opc Ua Server
Siemens Simatic Wincc Oa
Siemens Simatic Wincc Runtime Advanced
Siemens Simatic Wincc Runtime Comfort
Siemens Simatic Wincc Runtime Hsp Comfort
Siemens Simatic Wincc Runtime Mobile
Siemens Sinema Server
Siemens Simatic S7-1500 Software Controller
Siemens Opc Unified Architecture
Siemens Sinec-nms 1.0
Siemens Telecontrol Server Basic
Siemens Sinec-nms
Siemens Simatic S7-1500f Firmware
Siemens Simatic S7-1500s Firmware
Siemens Simatic S7-1500t Firmware
7.5
CVSSv2
CVE-2022-32251
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). There is a missing authentication verification for a resource used to change the roles and permissions of a user. This could allow an malicious user to change the permissions of any user...
Siemens Sinema Remote Connect Server
7.5
CVSSv2
CVE-2022-32260
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). The affected application creates temporary user credentials for UMC (User Management Component) users. An attacker could use these temporary credentials for authentication bypass in cert...
Siemens Sinema Remote Connect Server
7.5
CVSSv2
CVE-2022-32262
A vulnerability has been identified in SINEMA Remote Connect Server (All versions < V3.1). The affected application contains a file upload server that is vulnerable to command injection. An attacker could use this to achieve arbitrary code execution.
Siemens Sinema Remote Connect Server
7.5
CVSSv2
CVE-2022-25315
In Expat (aka libexpat) prior to 2.4.5, there is an integer overflow in storeRawNames.
Libexpat Project Libexpat
Debian Debian Linux 10.0
Debian Debian Linux 11.0
Fedoraproject Fedora 34
Fedoraproject Fedora 35
Oracle Http Server 12.2.1.3.0
Oracle Http Server 12.2.1.4.0
Oracle Zfs Storage Appliance Kit 8.8
Siemens Sinema Remote Connect Server
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-7073
CVE-2024-5496
CVE-2024-5495
XPath injection
bypass
CVE-2024-30043
CVE-2024-24919
denial of service
CVE-2024-35468
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
6
NEXT »