A vulnerability has been identified in SINEC NMS (All versions < V2.0 SP1). The affected application allows users to upload arbitrary files via TFTP. This could allow an attacker to upload malicious firmware images or other files, that could potentially lead to remote code execution.
Metrics
Affected Vendors & Products
References
History
Fri, 04 Oct 2024 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Siemens
Siemens sinec Nms |
|
CPEs | cpe:2.3:a:siemens:sinec_nms:*:*:*:*:*:*:*:* cpe:2.3:a:siemens:sinec_nms:2.0:-:*:*:*:*:*:* |
|
Vendors & Products |
Siemens
Siemens sinec Nms |
MITRE
Status: PUBLISHED
Assigner: siemens
Published: 2024-02-13T09:00:23.301Z
Updated: 2024-08-27T14:27:23.272Z
Reserved: 2024-01-22T17:44:56.762Z
Link: CVE-2024-23811
Vulnrichment
Updated: 2024-08-01T23:13:08.178Z
NVD
Status : Modified
Published: 2024-02-13T09:15:49.760
Modified: 2024-11-21T08:58:28.397
Link: CVE-2024-23811
Redhat
No data.