A vulnerability has been identified in SINEC NMS (All versions < V2.0 SP1). The affected application incorrectly neutralizes special elements when creating a report which could lead to command injection.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-21265 A vulnerability has been identified in SINEC NMS (All versions < V2.0 SP1). The affected application incorrectly neutralizes special elements when creating a report which could lead to command injection.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Fri, 04 Oct 2024 17:15:00 +0000

Type Values Removed Values Added
First Time appeared Siemens
Siemens sinec Nms
CPEs cpe:2.3:a:siemens:sinec_nms:*:*:*:*:*:*:*:*
cpe:2.3:a:siemens:sinec_nms:2.0:-:*:*:*:*:*:*
Vendors & Products Siemens
Siemens sinec Nms

cve-icon MITRE

Status: PUBLISHED

Assigner: siemens

Published:

Updated: 2024-08-16T19:11:29.535Z

Reserved: 2024-01-22T17:44:56.762Z

Link: CVE-2024-23812

cve-icon Vulnrichment

Updated: 2024-08-01T23:13:08.485Z

cve-icon NVD

Status : Modified

Published: 2024-02-13T09:15:49.953

Modified: 2024-11-21T08:58:28.530

Link: CVE-2024-23812

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.