CVE-2021-37184 PUBLISHED CVSS 9.800000190734863 CRITICAL

A vulnerability has been identified in Industrial Edge Management (All versions < V1.3). An unauthenticated attacker could change the the password of any user in the system under certain circumstances. With this an attacker could impersonate any valid user on an affected system.

EPSS 0.52% · 66.5th percentile

Risk Scores

CVSS v3.1
9.800000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.52%
66.5th percentile

Affected Products

VendorProductVersions
siemensindustrial_edge_management0
SiemensIndustrial Edge ManagementAll versions < V1.3

Timeline

References

…and 2 more

Open in Interactive Console →