CVE-2021-37201
Summary
| CVE | CVE-2021-37201 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-09-14 11:15:00 UTC |
| Updated | 2021-09-24 15:10:00 UTC |
| Description | A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP1). The web interface of affected devices is vulnerable to a Cross-Site Request Forgery (CSRF) attack. This could allow an attacker to manipulate the SINEC NMS configuration by tricking an unsuspecting user with administrative privileges to click on a malicious link. |
NVD Known Affected Configurations (CPE 2.3)
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 590660 Siemens SINEC NMS Multiple Vulnerabilities (ICSA-21-257-14)