Siemens
Siemens Sinec Security Monitor: vulnerabilidades y CVE
Siemens Sinec Security Monitor tiene 7 vulnerabilidades publicadas, 3 de ellas en los últimos 12 meses. 2 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE7
Últimos 12 meses3
Críticas2
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-27661 | Media (5.3) | 0.27% | — | 10 mar 2026 | A vulnerability has been identified in SINEC Security Monitor (All versions < V4.9.0). The affected application leaks confidential information in metadata, and files such as information on contributors and email… |
| CVE-2025-40831 | Alta (7.1) | 0.39% | — | 9 dic 2025 | A vulnerability has been identified in SINEC Security Monitor (All versions < V4.10.0). The affected application lacks input validation of date parameter in report generation functionality. This could allow an… |
| CVE-2025-40830 | Alta (8.4) | 0.16% | — | 9 dic 2025 | A vulnerability has been identified in SINEC Security Monitor (All versions < V4.10.0). The affected application does not have proper authorization checks for the file_transfer feature in ssmctl-client command. This… |
| CVE-2024-47565 | Media (5.3) | 0.38% | — | 8 oct 2024 | A vulnerability has been identified in SINEC Security Monitor (All versions < V4.9.0). The affected application does not properly validate that user input complies with a list of allowed values. This could allow an… |
| CVE-2024-47563 | Media (6.9) | 0.55% | — | 8 oct 2024 | A vulnerability has been identified in SINEC Security Monitor (All versions < V4.9.0). The affected application does not properly validate a file path that is supplied to an endpoint intended to create CSR files. This… |
| CVE-2024-47562 | Crítica (9.3) | 0.27% | — | 8 oct 2024 | A vulnerability has been identified in SINEC Security Monitor (All versions < V4.9.0). The affected application does not properly neutralize special elements in user input to the ```ssmctl-client``` command. This could… |
| CVE-2024-47553 | Crítica (9.4) | 0.85% | — | 8 oct 2024 | A vulnerability has been identified in SINEC Security Monitor (All versions < V4.9.0). The affected application does not properly validate user input to the ```ssmctl-client``` command. This could allow an… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.