Description
A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). An authenticated attacker that is able to import firmware containers to an affected system could execute arbitrary commands in the local database.
Related CPE's
a
siemens
sinec_nms
4
CVSS impact metrics
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
8.8 · High
- CVSS V3.1 
- CVSS V3.0 
- CVSS V2.0 
Information
Source identifier
Vulnerability status
Analyzed
Published
2021-10-12T10:15:12.060
4 years agoLast modified
2021-10-18T15:05:44.140
4 years ago