ZeroHour

CVE-2024-23810

CVSS 3.1
9.8 critical
EPSS
<1%p49
Published
()
Modified
Description

A vulnerability has been identified in SINEC NMS (All versions < V2.0 SP1). The affected application is vulnerable to SQL injection. This could allow an unauthenticated remote attacker to execute arbitrary SQL queries on the server database.

Vendors
siemens
Products
sinec nms
Weakness
CWE-89
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.