A vulnerability has been identified in SINEC NMS (All versions < V3.0). The affected application executes a subset of its services as NT AUTHORITYSYSTEM
. This could allow a local attacker to execute operating system commands with elevated privileges.
The product performs an operation at a privilege level that is higher than the minimum level required, which creates new weaknesses or amplifies the consequences of other weaknesses.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Sinec_nms | Siemens | * | 3.0 (excluding) |