Aller au contenu

Fiche vulnérabilité

CVE-2024-23810 : faille critique siemens sinec nms (CVSS 9.8)

Description

A vulnerability has been identified in SINEC NMS (All versions < V2.0 SP1). The affected application is vulnerable to SQL injection. This could allow an unauthenticated remote attacker to execute arbitrary SQL queries on the server database.

En bref

Sévérité
Critique (CVSS 9.8)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
13 févr. 2024
Dernière mise à jour
17 juin 2026

Produits concernés

  • siemens sinec nms

Références

Rechercher une autre vulnérabilité dans la base CVE