« Back to list

Siemens

Siemens Ruggedcom NMS: vulnerabilities and CVEs

Siemens Ruggedcom NMS has 2 published vulnerabilities, 0 of them in the last 12 months. 1 are rated critical and 1 are listed by CISA as actively exploited.

CVEs2
Last 12 months0
Critical1
Actively exploited1

All vulnerabilities in the catalogue →⭐ Follow this technology

🔴 Actively exploited (CISA KEV)

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2021-40438Critical (9)100%⚠ Active exploitationSep 16, 2021
A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user. This issue affects Apache HTTP Server 2.4.48 and earlier.

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2021-40438Critical (9)100%⚠ Active exploitationSep 16, 2021
A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user. This issue affects Apache HTTP Server 2.4.48 and earlier.
CVE-2021-34798High (7.5)65%—Sep 16, 2021
Malformed requests may cause the server to dereference a NULL pointer. This issue affects Apache HTTP Server 2.4.48 and earlier.

🎯 How it gets exploited (ATT&CK techniques)

  1. T1090 Proxy1
  2. T1190 Exploit Public-Facing Application1

Number of CVEs of this technology mapped to each exploitation or primary-impact technique.

Other products by Siemens