漏洞标题
N/A
漏洞描述信息
已确定Siveillance VMS 2017 R2(所有版本<V11.2a)、Siveillance VMS 2018 R1(所有版本<V12.1a)、Siveillance VMS 2018 R2(所有版本<V12.2a)、Siveillance VMS 2018 R3(所有版本<V12.3a)、Siveillance VMS 2019 R1(所有版本<V13.1a)中发现了一个漏洞。攻击者可以在未经授权的情况下更改设备属性。利用此安全漏洞无需用户交互。成功利用将破坏目标系统的保密性、完整性和可用性。在 advisory 发布时,已知此安全漏洞尚未公开利用。
CVSS信息
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
漏洞类别
N/A
漏洞标题
N/A
漏洞描述信息
A vulnerability has been identified in Siveillance VMS 2017 R2 (All versions < V11.2a), Siveillance VMS 2018 R1 (All versions < V12.1a), Siveillance VMS 2018 R2 (All versions < V12.2a), Siveillance VMS 2018 R3 (All versions < V12.3a), Siveillance VMS 2019 R1 (All versions < V13.1a). An attacker with network access to port 80/TCP could change device properties without authorization. No user interaction is required to exploit this security vulnerability. Successful exploitation compromises confidentiality, integrity and availability of the targeted system. At the time of advisory publication no public exploitation of this security vulnerability was known.
CVSS信息
N/A
漏洞类别
授权机制缺失
漏洞标题
Siemens Siveillance VMS 授权问题漏洞
漏洞描述信息
Siemens Siveillance VMS是德国西门子(Siemens)公司的一套监控视频管理软件。 Siemens Siveillance VMS中存在授权问题漏洞。该漏洞源于网络系统或产品中缺少身份验证措施或身份验证强度不足。以下产品及版本受到影响:Siemens Siveillance VMS 2017 R2 v11.2a之前版本,Siemens Siveillance VMS 2018 R1 v12.1a之前版本,Siemens Siveillance VMS 2018 R2 v12.2a之前
CVSS信息
N/A
漏洞类别
授权问题