Siemens resolves vulnerabilities in CADRA, IAM, Mendix, OpCenter, RUGGEDCOM, SIDIS, SIMATIC (advisories.ncsc.nl)
0xBASE INTEL BRIEF
- Siemens patches vulnerabilities in CADRA, IAM, Mendix, OpCenter, RUGGEDCOM, SIDIS, and SIMATIC
- Potential attacks: DoS, XSS, data manipulation, security bypass, remote code execution, sensitive data access, privilege escalation
- Attacker must have access to the production environment
"Siemens has fixed vulnerabilities in multiple products that could allow denial-of-service, cross-site scripting, data manipulation, security bypass, remote code execution (SYSTEM/user privileges), access to sensitive data, and privilege escalation. An attacker needs access to the production environment, which should not be publicly accessible."
no comments yet.