VDB
SSA-755517
SSA-755517
PUBLISHED
CVSS 8.600000381469727 HIGH
Siemens has released hotfixes for Siveillance Video DLNA Server, which fix a path traversal vulnerability that could allow an authenticated remote attacker to access sensitive information on the DLNA server. Siemens has released updates for the DLNA server and recommends to apply the update on all installations where DLNA server used.
Risk Scores
CVSS 3.1
8.600000381469727
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N/E:P/RL:O/RC:C
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Siveillance Video DLNA Server |
Exploit Intelligence
- https://cert-portal.siemens.com/productcert/pdf/ssa-755517.pdf (circl)
- https://cert-portal.siemens.com/productcert/txt/ssa-755517.txt (circl)
- https://cert-portal.siemens.com/productcert/csaf/ssa-755517.json (circl)
- https://support.industry.siemens.com/cs/ww/en/view/109766085/ (circl)
- https://support.industry.siemens.com/cs/ww/en/view/109769052/ (circl)
- https://support.industry.siemens.com/cs/ww/en/view/109773456/ (circl)
- https://support.industry.siemens.com/cs/ww/en/view/109779088/ (circl)
- https://support.industry.siemens.com/cs/ww/en/view/109781128/ (circl)
- https://support.industry.siemens.com/cs/ww/en/view/109791980/ (circl)
- https://support.industry.siemens.com/cs/ww/en/view/109801904/ (circl)
Timeline
- CVE Published
References
- https://cert-portal.siemens.com/productcert/pdf/ssa-755517.pdf advisory
- https://cert-portal.siemens.com/productcert/txt/ssa-755517.txt advisory
- https://cert-portal.siemens.com/productcert/csaf/ssa-755517.json advisory
- https://support.industry.siemens.com/cs/ww/en/view/109766085/ fix
- https://support.industry.siemens.com/cs/ww/en/view/109769052/ fix
- https://support.industry.siemens.com/cs/ww/en/view/109773456/ fix
- https://support.industry.siemens.com/cs/ww/en/view/109779088/ fix
- https://support.industry.siemens.com/cs/ww/en/view/109781128/ fix
- https://support.industry.siemens.com/cs/ww/en/view/109791980/ fix
- https://support.industry.siemens.com/cs/ww/en/view/109801904/ fix