Vulnerabilities > Siemens > Sinec NMS > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-11-12 CVE-2024-47808 Incorrect Permission Assignment for Critical Resource vulnerability in Siemens Sinec NMS
A vulnerability has been identified in SINEC NMS (All versions < V3.0 SP1).
local
low complexity
siemens CWE-732
6.5
2024-08-13 CVE-2024-41941 Incorrect Authorization vulnerability in Siemens Sinec NMS 1.0/1.0.3/2.0
A vulnerability has been identified in SINEC NMS (All versions < V3.0).
network
low complexity
siemens CWE-863
4.3
2023-10-10 CVE-2023-44315 Cross-site Scripting vulnerability in Siemens Sinec NMS 1.0/1.0.3
A vulnerability has been identified in SINEC NMS (All versions < V2.0).
network
low complexity
siemens CWE-79
5.4
2021-12-16 CVE-2021-42550 Deserialization of Untrusted Data vulnerability in multiple products
In logback version 1.2.7 and prior versions, an attacker with the required privileges to edit configurations files could craft a malicious configuration allowing to execute arbitrary code loaded from LDAP servers.
network
high complexity
qos redhat netapp siemens CWE-502
6.6
2021-10-12 CVE-2021-33722 Path Traversal vulnerability in Siemens Sinec NMS 1.0
A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1).
network
low complexity
siemens CWE-22
4.9
2021-10-12 CVE-2021-33723 Unspecified vulnerability in Siemens Sinec NMS 1.0
A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1).
network
low complexity
siemens
6.5
2021-10-12 CVE-2021-33727 Information Exposure vulnerability in Siemens Sinec NMS 1.0
A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1).
network
low complexity
siemens CWE-200
6.5
2021-03-25 CVE-2021-3449 NULL Pointer Dereference vulnerability in multiple products
An OpenSSL TLS server may crash if sent a maliciously crafted renegotiation ClientHello message from a client.
5.9