Логотип exploitDog
bind:CVE-2024-31485
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-31485

Количество 3

Количество 3

nvd логотип

CVE-2024-31485

больше 1 года назад

A vulnerability has been identified in CPCI85 Central Processing/Communication (All versions < V5.30), SICORE Base system (All versions < V1.3.0). The web interface of affected devices is vulnerable to command injection due to missing server side input sanitation. This could allow an authenticated privileged remote attacker to execute arbitrary code with root privileges.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-xm6m-f95r-5x2c

больше 1 года назад

A vulnerability has been identified in CPCI85 Central Processing/Communication (All versions < V5.30), SICORE Base system (All versions < V1.3.0). The web interface of affected devices is vulnerable to command injection due to missing server side input sanitation. This could allow an authenticated privileged remote attacker to execute arbitrary code with root privileges.

CVSS3: 7.2
EPSS: Низкий
fstec логотип

BDU:2024-04095

больше 1 года назад

Уязвимость микропрограммного обеспечения CPCI85 и SICORE процессорных модулей управления Siemens SICAM, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-31485

A vulnerability has been identified in CPCI85 Central Processing/Communication (All versions < V5.30), SICORE Base system (All versions < V1.3.0). The web interface of affected devices is vulnerable to command injection due to missing server side input sanitation. This could allow an authenticated privileged remote attacker to execute arbitrary code with root privileges.

CVSS3: 7.2
1%
Низкий
больше 1 года назад
github логотип
GHSA-xm6m-f95r-5x2c

A vulnerability has been identified in CPCI85 Central Processing/Communication (All versions < V5.30), SICORE Base system (All versions < V1.3.0). The web interface of affected devices is vulnerable to command injection due to missing server side input sanitation. This could allow an authenticated privileged remote attacker to execute arbitrary code with root privileges.

CVSS3: 7.2
1%
Низкий
больше 1 года назад
fstec логотип
BDU:2024-04095

Уязвимость микропрограммного обеспечения CPCI85 и SICORE процессорных модулей управления Siemens SICAM, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.2
1%
Низкий
больше 1 года назад

Уязвимостей на страницу