Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-75578
HistoryOct 11, 2023 - 12:00 a.m.

Siemens SINEMA Server V14 Cross-Site Scripting Vulnerability

2023-10-1100:00:00
China National Vulnerability Database
www.cnvd.org.cn
10
siemens
sinema server
cross-site scripting
vulnerability
industrial applications
visualization
network monitoring
snmp configuration
arbitrary code
application server
system privileges
germany

AI Score

6.7

Confidence

High

EPSS

0.001

Percentile

41.5%

Siemens SINEMA Server is a software from Siemens, Germany, developed specifically for industrial applications. It enables you to fully visualize and monitor your network. A cross-site scripting vulnerability exists in Siemens SINEMA Server V14 due to an affected application incorrectly clearing certain SNMP configuration data retrieved from a monitored device. An attacker could exploit the vulnerability to execute arbitrary code on the application server using SYSTEM privileges.

AI Score

6.7

Confidence

High

EPSS

0.001

Percentile

41.5%

Related for CNVD-2023-75578