Lucene search

K
cvelistSiemensCVELIST:CVE-2021-33730
HistoryOct 12, 2021 - 9:49 a.m.

CVE-2021-33730

2021-10-1209:49:30
CWE-89
siemens
www.cve.org
3
vulnerability
sinec nms
privileged attacker
authenticated
arbitrary commands
local database
crafted requests
webserver

AI Score

7.6

Confidence

High

EPSS

0.002

Percentile

52.5%

A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). A privileged authenticated attacker could execute arbitrary commands in the local database by sending crafted requests to the webserver of the affected application.

CNA Affected

[
  {
    "product": "SINEC NMS",
    "vendor": "Siemens",
    "versions": [
      {
        "status": "affected",
        "version": "All versions < V1.0 SP2 Update 1"
      }
    ]
  }
]

AI Score

7.6

Confidence

High

EPSS

0.002

Percentile

52.5%

Related for CVELIST:CVE-2021-33730