CVE-2020-10041 PUBLISHED CVSS 6.099999904632568 MEDIUM

A vulnerability has been identified in SICAM MMU (All versions < V2.05), SICAM SGU (All versions), SICAM T (All versions < V2.18). A stored Cross-Site-Scripting (XSS) vulnerability is present in different locations of the web application. An attacker might be able to take over a session of a legitimate user.

EPSS 0.32% · 54.5th percentile

Risk Scores

CVSS v3.1
6.099999904632568
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
EPSS Score
0.32%
54.5th percentile

Affected Products

VendorProductVersions
siemenssicam_sgu_firmware
Siemens AGSICAM TAll versions < V2.18
siemenssicam_t_firmware0
Siemens AGSICAM SGUAll versions
Siemens AGSICAM MMUAll versions < V2.05
siemenssicam_mmu_firmware0

Timeline

References

Open in Interactive Console →