Security Advisory

CVE-2023-44315

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-10-10 10:21:41
Last updated 2025-02-27 20:44:59
Assigner siemens
State PUBLISHED

Description

A vulnerability has been identified in SINEC NMS (All versions < V2.0). The affected application improperly sanitizes certain SNMP configuration data retrieved from monitored devices. An attacker with access to a monitored device could prepare a stored cross-site scripting (XSS) attack that may lead to unintentional modification of application data by legitimate users.