Skip to main content

Vendor/product archive

siemens / sinema_server CVEs

Beta · best-effort

15 CVEs tagged to siemens / sinema_server3 Critical, 6 High, 6 Medium, 0 Low, 0 Unrated.

CVE-2023-35796

Published Oct 10, 2023

A vulnerability has been identified in SINEMA Server V14 (All versions). The affected application improperly sanitizes certain SNMP configuration data retrieved from monitored dev…

CVSS 8.3 · High
Vendor/product tagsBeta · best-effort

CVE-2021-39275

Published Sep 16, 2021

ap_escape_quotes() may write beyond the end of a buffer when given malicious input. No included modules pass untrusted data to these functions, but third-party / external modules…

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
11.9

CVE-2019-10941

Published Sep 14, 2021

A vulnerability has been identified in SINEMA Server (All versions < V14 SP3). Missing authentication for functionality that requires administrative user identity could allow an a…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-10940

Published Jan 16, 2020

A vulnerability has been identified in SINEMA Server (All versions < V14.0 SP2 Update 1). Incorrect session validation could allow an attacker with a valid session, with low privi…

CVSS 9.9 · Critical
Vendor/product tagsBeta · best-effort

CVE-2016-6486

Published Aug 8, 2016

Siemens SINEMA Server uses weak permissions for the application folder, which allows local users to gain privileges via unspecified vectors.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2014-2733

Published Apr 19, 2014

Siemens SINEMA Server before 12 SP1 allows remote attackers to cause a denial of service (web-interface outage) via crafted HTTP requests to port (1) 4999 or (2) 80.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-2732

Published Apr 19, 2014

Multiple directory traversal vulnerabilities in the integrated web server in Siemens SINEMA Server before 12 SP1 allow remote attackers to access arbitrary files via HTTP traffic…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-2731

Published Apr 19, 2014

Multiple unspecified vulnerabilities in the integrated web server in Siemens SINEMA Server before 12 SP1 allow remote attackers to execute arbitrary code via HTTP traffic to port…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-15 of 15 CVEsPage 1 of 1