VDB
CVE-2019-18313
CVE-2019-18313
PUBLISHED
CVSS 9.800000190734863 CRITICAL
A vulnerability has been identified in SPPA-T3000 MS3000 Migration Server (All versions). An attacker with network access to the MS3000 Server could gain remote code execution by sending specifically crafted objects to one of the RPC services. Please note that an attacker needs to have network access to the MS3000 in order to exploit this vulnerability. At the time of advisory publication no public exploitation of this security vulnerability was known.
EPSS 3.11% · 87.1th percentile
Risk Scores
CVSS 3.1
9.800000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
3.11%
87.1th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| siemens | sppa-t3000_ms3000_migration_server | |
| Siemens | SPPA-T3000 MS3000 Migration Server | All versions |
Exploit Intelligence
Timeline
- Dec 10, 2019 CVE Published
- Apr 14, 2021 EPSS Score
- Jun 23, 2021 EPSS Score
- Oct 26, 2021 EPSS Score
- Dec 27, 2021 EPSS Score
- Feb 4, 2022 EPSS Score
- Feb 28, 2022 EPSS Score
- Apr 1, 2022 EPSS Score
- Jul 3, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Nov 6, 2022 EPSS Score
- Mar 11, 2023 EPSS Score
References
- https://cert-portal.siemens.com/productcert/pdf/ssa-451445.pdf advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-418979.pdf advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-170686.pdf advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-344983.pdf advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-761617.pdf advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-618620.pdf advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-525454.pdf advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-686531.pdf advisory
- https://cert-portal.siemens.com/productcert/pdf/ssa-273799.pdf advisory
- https://nvd.nist.gov/vuln/detail/CVE-2019-18313 advisory