Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-02706
HistoryJan 13, 2023 - 12:00 a.m.

Siemens SINEC INS Command Injection Vulnerability

2023-01-1300:00:00
China National Vulnerability Database
www.cnvd.org.cn
14
siemens
sinec ins
command injection
vulnerability
web-based application
infrastructure network services
simplifies installation
management
remote code execution
industrial networks

EPSS

0.002

Percentile

58.8%

SINEC INS (Infrastructure Network Services) is a web-based application that combines various network services in a single tool. This simplifies the installation and management of all network services related to industrial networks.A command injection vulnerability exists in Siemens SINEC INS, which could be exploited by an attacker to trigger remote code execution on affected components.

EPSS

0.002

Percentile

58.8%

Related for CNVD-2023-02706