cbcvebase.

Siemens Sinec Nms vulnerabilities

61 known vulnerabilities affecting siemens/sinec_nms.

Total CVEs
61
CISA KEV
2
actively exploited
Public exploits
2
Exploited in wild
2
Severity breakdown
CRITICAL8HIGH41MEDIUM11LOW1

Vulnerabilities

Page 1 of 4
CVE-2021-40438P1CRITICALCVSS 9.0KEVPoCRansomwarefixed in 1.0.32021-09-16
CVE-2021-40438 [CRITICAL] CWE-918 CVE-2021-40438: A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user. This issue affects Apache HTTP Server 2.4.48 and earlier.
nvd
CVE-2023-44487P1HIGHCVSS 7.5KEVPoCfixed in 3.02023-10-10
CVE-2023-44487 [HIGH] CWE-400 CVE-2023-44487: The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancell The HTTP/2 protocol allows a denial of service (server resource consumption) because request cancellation can reset many streams quickly, as exploited in the wild in August through October 2023.
nvd
CVE-2021-37200P2HIGHCVSS 7.7vAll versions < V1.0 SP12021-09-14
CVE-2021-37200 [HIGH] CWE-22 CVE-2021-37200: A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP1). An attacker with access A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP1). An attacker with access to the webserver of an affected system could download arbitrary files from the underlying filesystem by sending a specially crafted HTTP request.
nvd
CVE-2021-33731P2HIGHCVSS 7.2fixed in 1.0v1.0+1 more2021-10-12
CVE-2021-33731 [HIGH] CWE-89 CVE-2021-33731: A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). A privileged au A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). A privileged authenticated attacker could execute arbitrary commands in the local database by sending crafted requests to the webserver of the affected application.
nvd
CVE-2024-49775P2CRITICALCVSS 9.8fixed in *2024-12-16
CVE-2024-49775 [CRITICAL] CWE-122 CVE-2024-49775: A vulnerability has been identified in Opcenter Execution Foundation (All versions < V2501.0001), Op A vulnerability has been identified in Opcenter Execution Foundation (All versions < V2501.0001), Opcenter Intelligence (All versions < V2501.0001), Opcenter Quality (All versions < V2512), Opcenter RDnL (All versions < V2410), SIMATIC PCS neo V4.0 (All versions), SIMATIC PCS neo V4.1 (All versions < V4.1 Update 3), SIMATIC PCS neo V5.0 (All versi
nvd
CVE-2025-40738P2HIGHCVSS 8.8fixed in 4.0fixed in V4.02025-07-08
CVE-2025-40738 [HIGH] CWE-22 CVE-2025-40738: A vulnerability has been identified in SINEC NMS (All versions < V4.0). The affected application doe A vulnerability has been identified in SINEC NMS (All versions < V4.0). The affected application does not properly validate file paths when extracting uploaded ZIP files. This could allow an attacker to write arbitrary files to restricted locations and potentially execute code with elevated privileges (ZDI-CAN-26572).
nvd
CVE-2025-40737P2HIGHCVSS 8.8fixed in 4.0fixed in V4.02025-07-08
CVE-2025-40737 [HIGH] CWE-22 CVE-2025-40737: A vulnerability has been identified in SINEC NMS (All versions < V4.0). The affected application doe A vulnerability has been identified in SINEC NMS (All versions < V4.0). The affected application does not properly validate file paths when extracting uploaded ZIP files. This could allow an attacker to write arbitrary files to restricted locations and potentially execute code with elevated privileges (ZDI-CAN-26571).
nvd
CVE-2025-40736P2CRITICALCVSS 9.8fixed in 4.0fixed in V4.02025-07-08
CVE-2025-40736 [CRITICAL] CWE-306 CVE-2025-40736: A vulnerability has been identified in SINEC NMS (All versions < V4.0). The affected application exp A vulnerability has been identified in SINEC NMS (All versions < V4.0). The affected application exposes an endpoint that allows an unauthorized modification of administrative credentials. This could allow an unauthenticated attacker to reset the superadmin password and gain full control of the application (ZDI-CAN-26569).
nvd
CVE-2020-25237P2HIGHCVSS 8.1vAll versions < V1.0 SP1 Update 12021-02-09
CVE-2020-25237 [HIGH] CWE-22 CVE-2020-25237: A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP1 Update 1), SINEMA Server ( A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP1 Update 1), SINEMA Server (All versions < V14.0 SP2 Update 2). When uploading files to an affected system using a zip container, the system does not correctly check if the relative file path of the extracted files is still within the intended target directory. With this an attacke
nvd
CVE-2026-25654P2HIGHCVSS 8.8fixed in V4.0 SP32026-04-14
CVE-2026-25654 [HIGH] CWE-639 CVE-2026-25654: A vulnerability has been identified in SINEC NMS (All versions < V4.0 SP3). Affected products do not A vulnerability has been identified in SINEC NMS (All versions < V4.0 SP3). Affected products do not properly validate user authorization when processing password reset requests. This could allow an authenticated remote attacker to bypass authorization checks, leading to the ability to reset the password of any arbitrary user account.
nvd
CVE-2024-33698P2CRITICALCVSS 9.8fixed in *2024-09-10
CVE-2024-33698 [CRITICAL] CWE-122 CVE-2024-33698: A vulnerability has been identified in Opcenter Quality (All versions < V2406), Opcenter RDnL (All v A vulnerability has been identified in Opcenter Quality (All versions < V2406), Opcenter RDnL (All versions < V2410), SIMATIC PCS neo V4.0 (All versions), SIMATIC PCS neo V4.1 (All versions < V4.1 Update 2), SIMATIC PCS neo V5.0 (All versions < V5.0 Update 1), SINEC NMS (All versions), SINEMA Remote Connect Client (All versions < V3.2 SP3), Totall
nvd
CVE-2025-40735P2HIGHCVSS 8.8fixed in 4.0fixed in V4.02025-07-08
CVE-2025-40735 [HIGH] CWE-89 CVE-2025-40735: A vulnerability has been identified in SINEC NMS (All versions < V4.0). The affected devices are vul A vulnerability has been identified in SINEC NMS (All versions < V4.0). The affected devices are vulnerable to SQL injection. This could allow an unauthenticated remote attacker to execute arbitrary SQL queries on the server database.
nvd
CVE-2024-23810P2CRITICALCVSS 9.8fixed in 2.0v2.0+1 more2024-02-13
CVE-2024-23810 [CRITICAL] CWE-89 CVE-2024-23810: A vulnerability has been identified in SINEC NMS (All versions < V2.0 SP1). The affected application A vulnerability has been identified in SINEC NMS (All versions < V2.0 SP1). The affected application is vulnerable to SQL injection. This could allow an unauthenticated remote attacker to execute arbitrary SQL queries on the server database.
nvd
CVE-2021-33732P3HIGHCVSS 7.2fixed in 1.0v1.0+1 more2021-10-12
CVE-2021-33732 [HIGH] CWE-89 CVE-2021-33732: A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). A privileged au A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). A privileged authenticated attacker could execute arbitrary commands in the local database by sending crafted requests to the webserver of the affected application.
nvd
CVE-2021-33734P3HIGHCVSS 7.2fixed in 1.0v1.0+1 more2021-10-12
CVE-2021-33734 [HIGH] CWE-89 CVE-2021-33734: A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). A privileged au A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). A privileged authenticated attacker could execute arbitrary commands in the local database by sending crafted requests to the webserver of the affected application.
nvd
CVE-2021-33730P3HIGHCVSS 7.2fixed in 1.0v1.0+1 more2021-10-12
CVE-2021-33730 [HIGH] CWE-89 CVE-2021-33730: A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). A privileged au A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). A privileged authenticated attacker could execute arbitrary commands in the local database by sending crafted requests to the webserver of the affected application.
nvd
CVE-2021-3449P3MEDIUMCVSS 5.9v1.02021-03-25
CVE-2021-3449 [MEDIUM] CWE-476 CVE-2021-3449: An OpenSSL TLS server may crash if sent a maliciously crafted renegotiation ClientHello message from An OpenSSL TLS server may crash if sent a maliciously crafted renegotiation ClientHello message from a client. If a TLSv1.2 renegotiation ClientHello omits the signature_algorithms extension (where it was present in the initial ClientHello), but includes a signature_algorithms_cert extension then a NULL pointer dereference will result, leading to a cr
nvd
CVE-2021-33729P3HIGHCVSS 8.8fixed in 1.0v1.0+1 more2021-10-12
CVE-2021-33729 [HIGH] CWE-89 CVE-2021-33729: A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). An authenticate A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). An authenticated attacker that is able to import firmware containers to an affected system could execute arbitrary commands in the local database.
nvd
CVE-2021-33733P3HIGHCVSS 7.2fixed in 1.0v1.0+1 more2021-10-12
CVE-2021-33733 [HIGH] CWE-89 CVE-2021-33733: A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). A privileged au A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). A privileged authenticated attacker could execute arbitrary commands in the local database by sending crafted requests to the webserver of the affected application.
nvd
CVE-2024-41940P3CRITICALCVSS 9.1fixed in 3.0fixed in V3.02024-08-13
CVE-2024-41940 [CRITICAL] CWE-20 CVE-2024-41940: A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application doe A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application does not properly validate user input to a privileged command queue. This could allow an authenticated attacker to execute OS commands with elevated privileges.
nvd
Siemens Sinec Nms vulnerabilities | cvebase