A vulnerability has been identified in SINEC NMS (All versions < V2.0 SP1). The affected application allows users to upload arbitrary files via TFTP. This could allow an attacker to upload malicious firmware images or other files, that could potentially lead to remote code execution.
                
            Metrics
Affected Vendors & Products
References
        History
                    Fri, 04 Oct 2024 17:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Siemens Siemens sinec Nms | |
| CPEs | cpe:2.3:a:siemens:sinec_nms:*:*:*:*:*:*:*:* cpe:2.3:a:siemens:sinec_nms:2.0:-:*:*:*:*:*:* | |
| Vendors & Products | Siemens Siemens sinec Nms | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: siemens
Published: 2024-02-13T09:00:23.301Z
Updated: 2024-08-27T14:27:23.272Z
Reserved: 2024-01-22T17:44:56.762Z
Link: CVE-2024-23811
 Vulnrichment
                        Vulnrichment
                    Updated: 2024-08-01T23:13:08.178Z
 NVD
                        NVD
                    Status : Modified
Published: 2024-02-13T09:15:49.760
Modified: 2024-11-21T08:58:28.397
Link: CVE-2024-23811
 Redhat
                        Redhat
                    No data.