Lucene search

K
cvelistSiemensCVELIST:CVE-2021-33723
HistoryOct 12, 2021 - 9:49 a.m.

CVE-2021-33723

2021-10-1209:49:24
CWE-285
siemens
www.cve.org
6
vulnerability
sinec nms
unauthorized changes
password manipulation

AI Score

7.1

Confidence

High

EPSS

0.001

Percentile

22.7%

A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). An authenticated attacker could change the user profile of any user without proper authorization. With this, the attacker could change the password of any user in the affected system.

CNA Affected

[
  {
    "product": "SINEC NMS",
    "vendor": "Siemens",
    "versions": [
      {
        "status": "affected",
        "version": "All versions < V1.0 SP2 Update 1"
      }
    ]
  }
]

AI Score

7.1

Confidence

High

EPSS

0.001

Percentile

22.7%

Related for CVELIST:CVE-2021-33723