|
Description: | | A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP2 Update 1). A privileged authenticated attacker could execute arbitrary commands in the local database by sending crafted requests to the webserver of the affected application. |
|
Impact: | | An attacker can inject arbitrary sql commands to view or change the database of the target by exploiting the vulnerability successfully. |
|
Affected OS: | | Windows, Others |
|
Reference: | | https://cert-portal.siemens.com/productcert/pdf/ssa-163251.pdf
|
|