Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
siemens sinec nms 1.0 vulnerabilities and exploits
(subscribe to this query)
9.1
CVSSv3
CVE-2021-33725
A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). The affected system allows to delete arbitrary files or directories under a user controlled path and does not correctly check if the relative path is still within the intended target directory...
Siemens Sinec Nms
Siemens Sinec Nms 1.0
9.1
CVSSv3
CVE-2021-33724
A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). The affected system contains an Arbitrary File Deletion vulnerability that possibly allows to delete an arbitrary file or directory under a user controlled path.
Siemens Sinec Nms
Siemens Sinec Nms 1.0
8.8
CVSSv3
CVE-2021-33729
A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). An authenticated attacker that is able to import firmware containers to an affected system could execute arbitrary commands in the local database.
Siemens Sinec Nms
Siemens Sinec Nms 1.0
8.8
CVSSv3
CVE-2021-37201
A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP1). The web interface of affected devices is vulnerable to a Cross-Site Request Forgery (CSRF) attack. This could allow an malicious user to manipulate the SINEC NMS configuration by tricking an unsuspecti...
Siemens Sinec Network Management System
Siemens Sinec Network Management System 1.0
8.1
CVSSv3
CVE-2020-25237
A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP1 Update 1), SINEMA Server (All versions < V14.0 SP2 Update 2). When uploading files to an affected system using a zip container, the system does not correctly check if the relative file path of the ext...
Siemens Sinec Network Management System
Siemens Sinec Network Management System 1.0
Siemens Sinema Server
Siemens Sinema Server 14.0
7.7
CVSSv3
CVE-2021-37200
A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP1). An attacker with access to the webserver of an affected system could download arbitrary files from the underlying filesystem by sending a specially crafted HTTP request.
Siemens Sinec Network Management System
Siemens Sinec Network Management System 1.0
7.5
CVSSv3
CVE-2023-24998
Apache Commons FileUpload prior to 1.5 does not limit the number of request parts to be processed resulting in the possibility of an attacker triggering a DoS with a malicious upload or series of uploads. Note that, like all of the file upload limits, the new configuration option...
Apache Commons Fileupload
Apache Commons Fileupload 1.0
Debian Debian Linux 9.0
Debian Debian Linux 11.0
7.5
CVSSv3
CVE-2021-33726
A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). The affected system allows to download arbitrary files under a user controlled path and does not correctly check if the relative path is still within the intended target directory.
Siemens Sinec Nms
Siemens Sinec Nms 1.0
7.5
CVSSv3
CVE-2019-6575
A vulnerability has been identified in SIMATIC CP 443-1 OPC UA (All versions), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) (All versions < V2.7), SIMATIC HMI Comfort Outdoor Panels 7" & 15" (incl. SIPLUS variants) (All versions < V1...
Siemens Simatic Cp443-1 Opc Ua Firmware
Siemens Simatic Et 200 Open Controller Cpu 1515sp Pc2 Firmware
Siemens Simatic Ipc Diagmonitor Firmware
Siemens Simatic Net Pc Software Firmware
Siemens Simatic Rf188c Firmware
Siemens Simatic Rf600r Firmware
Siemens Simatic S7-1500 Firmware
Siemens Sinumerik Opc Ua Server
Siemens Simatic Wincc Oa
Siemens Simatic Wincc Runtime Advanced
Siemens Simatic Wincc Runtime Comfort
Siemens Simatic Wincc Runtime Hsp Comfort
Siemens Simatic Wincc Runtime Mobile
Siemens Sinema Server
Siemens Simatic S7-1500 Software Controller
Siemens Opc Unified Architecture
Siemens Sinec-nms 1.0
Siemens Telecontrol Server Basic
Siemens Sinec-nms
Siemens Simatic S7-1500f Firmware
Siemens Simatic S7-1500s Firmware
Siemens Simatic S7-1500t Firmware
7.2
CVSSv3
CVE-2021-33730
A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). A privileged authenticated attacker could execute arbitrary commands in the local database by sending crafted requests to the webserver of the affected application.
Siemens Sinec Nms
Siemens Sinec Nms 1.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-7073
CVE-2024-5496
CVE-2024-5495
XPath injection
bypass
CVE-2024-30043
CVE-2024-24919
denial of service
CVE-2024-35468
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »