Siemens Sinema Server vulnerabilities

15 known vulnerabilities affecting siemens/sinema_server.

Total CVEs
15
CISA KEV
1
actively exploited
Public exploits
1
Exploited in wild
1
Severity breakdown
CRITICAL5HIGH4MEDIUM6

Vulnerabilities

Page 1 of 1
CVE-2023-35796CRITICALCVSS 9.0v14.02023-10-10
CVE-2023-35796 [HIGH] CWE-79 CVE-2023-35796: A vulnerability has been identified in SINEMA Server V14 (All versions). The affected application im A vulnerability has been identified in SINEMA Server V14 (All versions). The affected application improperly sanitizes certain SNMP configuration data retrieved from monitored devices. An attacker with access to a monitored device could perform a stored cross-site scripting (XSS) attack that may lead to arbitrary code execution with `SYSTEM` privileges
nvd
CVE-2022-25311HIGHCVSS 8.8v14.02022-03-08
CVE-2022-25311 [HIGH] CWE-269 CVE-2022-25311: A vulnerability has been identified in SINEC NMS (All versions >= V1.0.3 < V2.0), SINEC NMS (All ver A vulnerability has been identified in SINEC NMS (All versions >= V1.0.3 < V2.0), SINEC NMS (All versions < V1.0.3), SINEMA Server V14 (All versions). The affected software do not properly check privileges between users during the same web browser session, creating an unintended sphere of control. This could allow an authenticated low privileged user
nvd
CVE-2021-40438CRITICALCVSS 9.0KEVPoCv14.02021-09-16
CVE-2021-40438 [CRITICAL] CWE-918 CVE-2021-40438: A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user. This issue affects Apache HTTP Server 2.4.48 and earlier.
nvd
CVE-2021-39275CRITICALCVSS 9.8v14.02021-09-16
CVE-2021-39275 [CRITICAL] CWE-787 CVE-2021-39275: ap_escape_quotes() may write beyond the end of a buffer when given malicious input. No included modu ap_escape_quotes() may write beyond the end of a buffer when given malicious input. No included modules pass untrusted data to these functions, but third-party / external modules may. This issue affects Apache HTTP Server 2.4.48 and earlier.
nvd
CVE-2021-34798HIGHCVSS 7.5v14.02021-09-16
CVE-2021-34798 [HIGH] CWE-476 CVE-2021-34798: Malformed requests may cause the server to dereference a NULL pointer. This issue affects Apache HTT Malformed requests may cause the server to dereference a NULL pointer. This issue affects Apache HTTP Server 2.4.48 and earlier.
nvd
CVE-2019-10941MEDIUMCVSS 5.3fixed in 14.0v14.0+1 more2021-09-14
CVE-2019-10941 [MEDIUM] CWE-306 CVE-2019-10941: A vulnerability has been identified in SINEMA Server (All versions < V14 SP3). Missing authenticatio A vulnerability has been identified in SINEMA Server (All versions < V14 SP3). Missing authentication for functionality that requires administrative user identity could allow an attacker to obtain encoded system configuration backup files. This is only possible through network access to the affected system, and successful exploitation requires no sy
cvelistv5nvd
CVE-2021-3449MEDIUMCVSS 5.9v14.02021-03-25
CVE-2021-3449 [MEDIUM] CWE-476 CVE-2021-3449: An OpenSSL TLS server may crash if sent a maliciously crafted renegotiation ClientHello message from An OpenSSL TLS server may crash if sent a maliciously crafted renegotiation ClientHello message from a client. If a TLSv1.2 renegotiation ClientHello omits the signature_algorithms extension (where it was present in the initial ClientHello), but includes a signature_algorithms_cert extension then a NULL pointer dereference will result, leading to a cr
nvd
CVE-2020-25237HIGHCVSS 8.1fixed in 14.0v14.0+1 more2021-02-09
CVE-2020-25237 [HIGH] CWE-22 CVE-2020-25237: A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP1 Update 1), SINEMA Server ( A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP1 Update 1), SINEMA Server (All versions < V14.0 SP2 Update 2). When uploading files to an affected system using a zip container, the system does not correctly check if the relative file path of the extracted files is still within the intended target directory. With this an attacke
cvelistv5nvd
CVE-2020-7580MEDIUMCVSS 6.7vAll versions < V14 SP32020-06-10
CVE-2020-7580 [MEDIUM] CWE-428 CVE-2020-7580: A vulnerability has been identified in SIMATIC Automation Tool (All versions < V4 SP2), SIMATIC NET A vulnerability has been identified in SIMATIC Automation Tool (All versions < V4 SP2), SIMATIC NET PC Software V14 (All versions < V14 SP1 Update 14), SIMATIC NET PC Software V15 (All versions), SIMATIC NET PC Software V16 (All versions < V16 Upd3), SIMATIC PCS neo (All versions < V3.0 SP1), SIMATIC ProSave (All versions < V17), SIMATIC S7-1500 Softwa
cvelistv5nvd
CVE-2019-10940CRITICALCVSS 9.9fixed in 14.0v14.02020-01-16
CVE-2019-10940 [CRITICAL] CWE-266 CVE-2019-10940: A vulnerability has been identified in SINEMA Server (All versions < V14.0 SP2 Update 1). Incorrect A vulnerability has been identified in SINEMA Server (All versions < V14.0 SP2 Update 1). Incorrect session validation could allow an attacker with a valid session, with low privileges, to perform firmware updates and other administrative operations on connected devices. The security vulnerability could be exploited by an attacker with network acce
nvd
CVE-2019-6575HIGHCVSS 7.5vAll versions < V14 SP22019-04-17
CVE-2019-6575 [HIGH] CWE-248 CVE-2019-6575: A vulnerability has been identified in SIMATIC CP 443-1 OPC UA (All versions), SIMATIC ET 200SP Open A vulnerability has been identified in SIMATIC CP 443-1 OPC UA (All versions), SIMATIC ET 200SP Open Controller CPU 1515SP PC2 (incl. SIPLUS variants) (All versions = V2.5 < V2.6.1), SIMATIC S7-1500 Software Controller (All versions between V2.5 (including) and V2.7 (excluding)), SIMATIC WinCC OA (All versions < V3.15 P018), SIMATIC WinCC Runtime Advanc
cvelistv5nvd
CVE-2016-7165MEDIUMCVSS 6.4≤ 13.02016-11-15
CVE-2016-7165 [MEDIUM] CWE-254 CVE-2016-7165: A vulnerability has been identified in Primary Setup Tool (PST) (All versions < V4.2 HF1), SIMATIC I A vulnerability has been identified in Primary Setup Tool (PST) (All versions < V4.2 HF1), SIMATIC IT Production Suite (All versions < V7.0 SP1 HFX 2), SIMATIC NET PC-Software (All versions < V14), SIMATIC PCS 7 V7.1 (All versions), SIMATIC PCS 7 V8.0 (All versions), SIMATIC PCS 7 V8.1 (All versions), SIMATIC PCS 7 V8.2 (All versions < V8.2 SP1), SIMA
nvd
CVE-2014-2731CRITICALCVSS 9.3≤ 12.02014-04-19
CVE-2014-2731 [CRITICAL] CVE-2014-2731: Multiple unspecified vulnerabilities in the integrated web server in Siemens SINEMA Server before 12 Multiple unspecified vulnerabilities in the integrated web server in Siemens SINEMA Server before 12 SP1 allow remote attackers to execute arbitrary code via HTTP traffic to port (1) 4999 or (2) 80.
nvd
CVE-2014-2732MEDIUMCVSS 5.0≤ 12.02014-04-19
CVE-2014-2732 [MEDIUM] CWE-22 CVE-2014-2732: Multiple directory traversal vulnerabilities in the integrated web server in Siemens SINEMA Server b Multiple directory traversal vulnerabilities in the integrated web server in Siemens SINEMA Server before 12 SP1 allow remote attackers to access arbitrary files via HTTP traffic to port (1) 4999 or (2) 80.
nvd
CVE-2014-2733MEDIUMCVSS 5.0≤ 12.02014-04-19
CVE-2014-2733 [MEDIUM] CWE-20 CVE-2014-2733: Siemens SINEMA Server before 12 SP1 allows remote attackers to cause a denial of service (web-interf Siemens SINEMA Server before 12 SP1 allows remote attackers to cause a denial of service (web-interface outage) via crafted HTTP requests to port (1) 4999 or (2) 80.
nvd